bitcoind and Bitcoin-Qt prior to 0.15.1 have a stack-based buffer overflow if an attacker-controlled SOCKS proxy server is used. This results from an integer signedness error when the proxy server responds with an acknowledgement of an unexpected target domain name.
References
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2020-03-12T20:13:32
Updated: 2020-03-12T20:13:32
Reserved: 2018-10-29T00:00:00
Link: CVE-2017-18350
JSON object: View
NVD Information
Status : Modified
Published: 2020-03-12T21:15:12.373
Modified: 2023-11-07T02:41:54.470
Link: CVE-2017-18350
JSON object: View
Redhat Information
No data.
CWE