CVE-2018-17144: High severity bitcoin vulnerability
Bitcoin Core 0.14.x before 0.14.3, 0.15.x before 0.15.2, and 0.16.x before 0.16.3 and Bitcoin Knots 0.14.x through 0.16.x before 0.16.3 allow a remote denial of service (application crash) exploitable by miners via duplicate input. An attacker can make bitcoind or Bitcoin-Qt crash.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-17144?
CVE-2018-17144 is classified as a denial of service vulnerability that can cause application crashes.
How do I fix CVE-2018-17144?
To resolve CVE-2018-17144, upgrade your Bitcoin Core to version 0.14.3, 0.15.2, or 0.16.3 or later.
What versions are affected by CVE-2018-17144?
CVE-2018-17144 affects Bitcoin Core versions 0.14.x through 0.14.2, 0.15.x through 0.15.1, and 0.16.x through 0.16.2 as well as Bitcoin Knots versions 0.14.x through 0.16.2.
Who can exploit CVE-2018-17144?
CVE-2018-17144 can be exploited by miners who can send duplicate inputs to induce a crash in the affected applications.
What impact does CVE-2018-17144 have on users?
The impact of CVE-2018-17144 on users is the potential for application crashes leading to a denial of service.