CVE-2025-66692: High severity Binance Trust Wallet Core vulnerability
Published Jan 20, 2026
·Updated
A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Service (DoS) via a crafted input.
Affected Software
2 affected components
Binance Trust Wallet Core<5668c67
Trustwallet Trust Wallet Core<4.4.0
Remediation
Patch Available
Event History
Jan 20, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·09:16 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-66692?
CVE-2025-66692 has a severity rating that indicates it can lead to Denial of Service (DoS) attacks.
2
How do I fix CVE-2025-66692?
To fix CVE-2025-66692, update your Binance Trust Wallet Core to a version after commit 5668c67.
3
What causes CVE-2025-66692?
CVE-2025-66692 is caused by a buffer over-read in the PublicKey::verify() method.
4
Which versions of Binance Trust Wallet Core are affected by CVE-2025-66692?
Binance Trust Wallet Core versions before commit 5668c67 are affected by CVE-2025-66692.
5
What is the impact of CVE-2025-66692?
The impact of CVE-2025-66692 is the potential for Denial of Service (DoS) when processing crafted input.