312
VMScore

CVE-2020-26265

Published: 11/12/2020 Updated: 14/12/2020
CVSS v2 Base Score: 3.5 | Impact Score: 2.9 | Exploitability Score: 6.8
CVSS v3 Base Score: 5.3 | Impact Score: 3.6 | Exploitability Score: 1.6
VMScore: 312
Vector: AV:N/AC:M/Au:S/C:N/I:P/A:N

Vulnerability Summary

Go Ethereum, or "Geth", is the official Golang implementation of the Ethereum protocol. In Geth from version 1.9.4 and before version 1.9.20 a consensus-vulnerability could cause a chain split, where vulnerable versions refuse to accept the canonical chain. The fix was included in the Paragade release version 1.9.20. No individual workaround patches have been made -- all users are recommended to upgrade to a newer version.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ethereum go ethereum

Vendor Advisories

In go-ethereum from version 194 and before version 1920, a consensus-vulnerability could cause a chain split, where vulnerable versions refuse to accept the canonical chain The fix was included in the Paragade release version 1920 No individual workaround patches have been made - all users are recommended to upgrade to a newer version ...