Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2010-5140

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2010-5140
Last Modified 07 Aug 2012 10:37:38
Published 06 Aug 2012 12:55:01
Confidentiality Impact NONE NONE
Integrity Impact NONE NONE
Availability Impact PARTIAL PARTIAL
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2010-5140

Summary

wxBitcoin and bitcoind before 0.3.13 do not properly handle bitcoins associated with Bitcoin transactions that have zero confirmations, which allows remote attackers to cause a denial of service (invalid-transaction flood) by sending low-valued transactions without transaction fees.

Vulnerable Systems

Application

  • Bitcoind 0.3.10

  • Bitcoind 0.3.11

  • Bitcoind 0.3.12

  • Bitcoind 0.3.4

  • Bitcoind 0.3.5

  • Bitcoind 0.3.8

  • Wxbitcoin 0.3.10

  • Wxbitcoin 0.3.11

  • Wxbitcoin 0.3.12

  • Wxbitcoin 0.3.4

  • Wxbitcoin 0.3.5

  • Wxbitcoin 0.3.8


References

CONFIRM - https://en.bitcoin.it/wiki/CVEs

CONFIRM - http://www.bitcoin.org/smf/index.php?topic=1306.0


Last Updated: 27 May 2016 10:55:01