5
CVSSv2

CVE-2021-39137

Published: 24/08/2021 Updated: 31/08/2021
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

go-ethereum is the official Go implementation of the Ethereum protocol. In affected versions a consensus-vulnerability in go-ethereum (Geth) could cause a chain split, where vulnerable versions refuse to accept the canonical chain. Further details about the vulnerability will be disclosed at a later date. A patch is included in the upcoming `v1.10.8` release. No workaround are available.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

ethereum go ethereum

Vendor Advisories

In go-ethereum before version 1108, a consensus vulnerability could cause a chain split where vulnerable versions refuse to accept the canonical chain ...

Github Repositories

galaxynetwork

GalaxyNetWork(GNC) based Go Ethereum v1108 Changes made: Consensus algorithm: (As reference) Chia Proof of Space Construction wwwchianet/assets/Chia_Proof_of_Space_Construction_v11pdf Geth v1108 is a pre-announced hotfix release to patch a vulnerability in the EVM (CVE-2021-39137) Build implementation based Geth v1108 version The address balance will be map

BlockSec Academy Attack/Vulnerability Analysis on Medium [Dec 15, 2022] Beyond the market risk: a logic bug identified in SushiSwap’s KashiPairMediumRiskV1 contract [Sushi Swap | BSC] [Oct 10, 2022] How we recover the stolen funds for TransitSwap (and BabySwap) [Transit Swap | BSC] [Sep 27, 2022] Our short analysis of the Accusation of the Wintermute Project [winte