CVE-2024-32972 Information
May 08, 2024
cve
Description
go-ethereum (geth) is a golang execution layer implementation of the Ethereum protocol. Prior to 1.13.15 a vulnerable node can be made to consume very large amounts of memory when handling specially crafted p2p messages sent from an attacker node. The fix has been included in geth version 1.13.15 and onwards.
Reference
https://github.com/ethereum/go-ethereum/security/advisories/GHSA-4xc9-8hmq-j652 https://github.com/ethereum/go-ethereum/compare/v1.13.14…v1.13.15
Share on: