bitcoind and Bitcoin-Qt prior to 0.15.1 have a stack-based buffer overflow if an attacker-controlled SOCKS proxy server is used. This results from an integer signedness error when the proxy server responds with an acknowledgement of an unexpected target domain name.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-03-12T20:13:32

Updated: 2024-08-05T21:20:50.423Z

Reserved: 2018-10-29T00:00:00

Link: CVE-2017-18350

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2020-03-12T21:15:12.373

Modified: 2023-11-07T02:41:54.470

Link: CVE-2017-18350

cve-icon Redhat

No data.