Bitcoin Core before 0.21.0 allows a network split that is resultant from an integer overflow (calculating the time offset for newly connecting peers) and an abs64 logic bug.
References
Link | Resource |
---|---|
https://bitcoincore.org/en/2024/07/03/disclose-timestamp-overflow/ | Vendor Advisory |
https://en.bitcoin.it/wiki/Common_Vulnerabilities_and_Exposures | Third Party Advisory |
Configurations
History
30 Apr 2025, 16:14
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:bitcoin:bitcoin_core:*:*:*:*:*:*:*:* | |
References | () https://bitcoincore.org/en/2024/07/03/disclose-timestamp-overflow/ - Vendor Advisory | |
References | () https://en.bitcoin.it/wiki/Common_Vulnerabilities_and_Exposures - Third Party Advisory | |
First Time |
Bitcoin bitcoin Core
Bitcoin |
18 Nov 2024, 16:35
Type | Values Removed | Values Added |
---|---|---|
Summary |
|
|
CWE | CWE-190 | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.5 |
18 Nov 2024, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-11-18 04:15
Updated : 2025-04-30 16:14
NVD link : CVE-2024-52912
Mitre link : CVE-2024-52912
CVE.ORG link : CVE-2024-52912
JSON object : View
Products Affected
bitcoin
- bitcoin_core
CWE
CWE-190
Integer Overflow or Wraparound