btcd before 0.23.2, as used in Lightning Labs lnd before 0.15.2-beta and other Bitcoin-related products, mishandles witness size checking.
References
Link | Resource |
---|---|
https://github.com/btcsuite/btcd/pull/1896 | Patch Third Party Advisory |
https://github.com/btcsuite/btcd/releases/tag/v0.23.2 | Release Notes Third Party Advisory |
https://github.com/lightningnetwork/lnd/issues/7002 | Exploit Issue Tracking Third Party Advisory |
https://github.com/lightningnetwork/lnd/releases/tag/v0.15.2-beta | Release Notes Third Party Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
14 Nov 2022, 18:25
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://github.com/btcsuite/btcd/pull/1896 - Patch, Third Party Advisory | |
References | (MISC) https://github.com/btcsuite/btcd/releases/tag/v0.23.2 - Release Notes, Third Party Advisory | |
References | (MISC) https://github.com/lightningnetwork/lnd/releases/tag/v0.15.2-beta - Release Notes, Third Party Advisory | |
References | (MISC) https://github.com/lightningnetwork/lnd/issues/7002 - Exploit, Issue Tracking, Third Party Advisory | |
First Time |
Lightning Network Daemon Project
Lightning Network Daemon Project lightning Network Daemon Btcd Project btcd Btcd Project |
|
CWE | NVD-CWE-noinfo | |
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 9.8 |
CPE | cpe:2.3:a:btcd_project:btcd:*:*:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:*:*:*:*:*:*:*:* |
07 Nov 2022, 04:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-11-07 04:15
Updated : 2023-12-10 14:35
NVD link : CVE-2022-44797
Mitre link : CVE-2022-44797
CVE.ORG link : CVE-2022-44797
JSON object : View
Products Affected
btcd_project
- btcd
lightning_network_daemon_project
- lightning_network_daemon
CWE