CVE-2024-52912

CVSS 3.1 Score 7.5 of 10 (high)

Details

Published Nov 18, 2024
CWE ID 190

Summary

CVE-2024-52912 is a newly identified vulnerability in Bitcoin Core versions prior to 0.21.0. This issue arises from a combination of an integer overflow and an abs64 logic bug. Specifically, an integer overflow occurs during the calculation of time offsets for newly connecting peers, which in turn triggers an abs64 logic bug. The consequence is a network split, posing a significant risk to the Bitcoin network's stability and security. Users are strongly advised to upgrade to the latest version of Bitcoin Core to mitigate this vulnerability.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share