CVE-2021-3401: Critical severity Bitcoin Bitcoin vulnerability
Bitcoin Core before 0.19.0 might allow remote attackers to execute arbitrary code when another application unsafely passes the -platformpluginpath argument to the bitcoin-qt program, as demonstrated by an x-scheme-handler/bitcoin handler for a .desktop file or a web browser. NOTE: the discoverer states "I believe that this vulnerability cannot actually be exploited."
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-3401?
CVE-2021-3401 is considered a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2021-3401?
To fix CVE-2021-3401, update Bitcoin Core to version 0.19.0 or later.
What types of systems are affected by CVE-2021-3401?
CVE-2021-3401 affects Bitcoin Core versions prior to 0.19.0 installed on various operating systems.
Can CVE-2021-3401 be exploited remotely?
Yes, CVE-2021-3401 can be exploited remotely if an application unsafely passes the -platformpluginpath argument.
What does CVE-2021-3401 allow attackers to do?
CVE-2021-3401 allows attackers to execute arbitrary code on the affected systems.