btcd before 0.24.0 does not correctly implement the consensus rules outlined in BIP 68 and BIP 112, making it susceptible to consensus failures. Specifically, it uses the transaction version as a signed integer when it is supposed to be treated as unsigned. There can be a chain split and loss of funds.
History

Wed, 07 Aug 2024 17:00:00 +0000

Type Values Removed Values Added
Weaknesses CWE-436
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2024-05-05T00:00:00

Updated: 2024-08-07T15:03:11.041Z

Reserved: 2024-05-05T00:00:00

Link: CVE-2024-34478

cve-icon Vulnrichment

Updated: 2024-08-02T02:51:11.465Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-05T01:15:06.320

Modified: 2024-08-07T16:35:07.180

Link: CVE-2024-34478

cve-icon Redhat

No data.