btcd before 0.23.2, as used in Lightning Labs lnd before 0.15.2-beta and other Bitcoin-related products, mishandles witness size checking.
References
Link | Resource |
---|---|
https://github.com/btcsuite/btcd/pull/1896 | Patch Third Party Advisory |
https://github.com/btcsuite/btcd/releases/tag/v0.23.2 | Release Notes Third Party Advisory |
https://github.com/lightningnetwork/lnd/issues/7002 | Exploit Issue Tracking Third Party Advisory |
https://github.com/lightningnetwork/lnd/releases/tag/v0.15.2-beta | Release Notes Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-11-07T00:00:00
Updated: 2022-11-07T00:00:00
Reserved: 2022-11-07T00:00:00
Link: CVE-2022-44797
JSON object: View
NVD Information
Status : Analyzed
Published: 2022-11-07T04:15:09.650
Modified: 2022-11-14T18:25:33.807
Link: CVE-2022-44797
JSON object: View
Redhat Information
No data.
CWE