CVE-2010-5140: Buffer Overflow
wxBitcoin and bitcoind before 0.3.13 do not properly handle bitcoins associated with Bitcoin transactions that have zero confirmations, which allows remote attackers to cause a denial of service (invalid-transaction flood) by sending low-valued transactions without transaction fees.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-5140?
CVE-2010-5140 is classified as a denial of service vulnerability that can lead to application instability.
How do I fix CVE-2010-5140?
Upgrade wxBitcoin and bitcoind to version 0.3.13 or later to mitigate the vulnerability.
Who is affected by CVE-2010-5140?
CVE-2010-5140 affects users of wxBitcoin and bitcoind versions below 0.3.13.
What kind of attack is possible with CVE-2010-5140?
An attacker could exploit CVE-2010-5140 by flooding the system with low-valued, zero-confirmation transactions.
What are the potential impacts of CVE-2010-5140 on my system?
The exploitation of CVE-2010-5140 can cause a denial of service, leading to potential downtime and delayed transactions.