Ethereum go-ethereum
cpe:2.3:a:ethereum:go_ethereum:*:*:*:*:*:*:*
- < 1.17.0
A denial-of-service vulnerability has been identified in go-ethereum (geth) versions prior to 1.17.0. An attacker can exploit this vulnerability by sending a specially-crafted p2p message, leading to high memory usage.
Exploitation of this vulnerability causes excessive memory consumption, which can degrade performance or cause the application to become unresponsive.
Users can upgrade to go-ethereum version 1.17.0 or later to address this vulnerability. Instructions for downloading this version are available on the Geth downloads page.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.