CVE-2021-42764: Critical severity ethereum vulnerability
The Proof-of-Stake (PoS) Ethereum consensus protocol through 2021-10-19 allows an adversary to cause a denial of service (delayed consensus decisions), and also increase the profits of individual validators, via short-range reorganizations of the underlying consensus chain.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-42764?
CVE-2021-42764 is considered a medium severity vulnerability due to its potential to disrupt the consensus mechanism in Ethereum.
How does CVE-2021-42764 affect Ethereum validators?
CVE-2021-42764 can increase the profits of individual Ethereum validators through manipulation of the consensus chain.
What type of attack does CVE-2021-42764 enable?
CVE-2021-42764 enables adversaries to perform short-range reorganizations, leading to denial of service in the Ethereum PoS protocol.
What are the consequences of exploiting CVE-2021-42764?
Exploiting CVE-2021-42764 can cause delayed consensus decisions, affecting the availability and integrity of transaction processing on the Ethereum network.
How can I mitigate CVE-2021-42764?
To mitigate CVE-2021-42764, ensure your Ethereum node is updated to a version released after October 19, 2021, which addresses this vulnerability.