From 81ebf2e9c4415d901601207cb55928863893960a Mon Sep 17 00:00:00 2001 From: "advisory-database[bot]" <45398580+advisory-database[bot]@users.noreply.github.com> Date: Mon, 6 May 2024 19:21:08 +0000 Subject: [PATCH] Publish GHSA-4xc9-8hmq-j652 --- .../2024/05/GHSA-4xc9-8hmq-j652/GHSA-4xc9-8hmq-j652.json | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/advisories/github-reviewed/2024/05/GHSA-4xc9-8hmq-j652/GHSA-4xc9-8hmq-j652.json b/advisories/github-reviewed/2024/05/GHSA-4xc9-8hmq-j652/GHSA-4xc9-8hmq-j652.json index 26c850261c4..a6666b8353d 100644 --- a/advisories/github-reviewed/2024/05/GHSA-4xc9-8hmq-j652/GHSA-4xc9-8hmq-j652.json +++ b/advisories/github-reviewed/2024/05/GHSA-4xc9-8hmq-j652/GHSA-4xc9-8hmq-j652.json @@ -1,13 +1,13 @@ { "schema_version": "1.4.0", "id": "GHSA-4xc9-8hmq-j652", - "modified": "2024-05-06T16:17:23Z", + "modified": "2024-05-06T19:19:23Z", "published": "2024-05-06T14:20:40Z", "aliases": [ "CVE-2024-32972" ], "summary": "go-ethereum vulnerable to DoS via malicious p2p message", - "details": "### Impact\n\nA vulnerable node can be made to consume very large amounts of memory when handling specially crafted p2p messages sent from an attacker node.\n\nMore in-depth details will be released at a later time. \n\n### Patches\n\nThe fix has been included in geth version `1.13.15` and onwards.\n\n### Workarounds\n\nNo workarounds have been made public. \n\n### References\n\nNo more information is released at this time.\n\n### Credit\n\nThis bug was responsibly disclosed by DongHan Kim via the Ethereum big bounty program, for which we're very grateful! ", + "details": "### Impact\n\nA vulnerable node can be made to consume very large amounts of memory when handling specially crafted p2p messages sent from an attacker node.\n\nMore in-depth details will be released at a later time. \n\n### Patches\n\nThe fix has been included in geth version `1.13.15` and onwards.\n\n### Workarounds\n\nNo workarounds have been made public. \n\n### References\n\nNo more information is released at this time.\n\n### Credit\n\nThis issue was disclosed responsibly by DongHan Kim via the Ethereum bug bounty program. Thank you for your cooperation. ", "severity": [ { "type": "CVSS_V3",