CVE-2022-37450
Published on: Not Yet Published
Last Modified on: 08/06/2022 02:35:00 AM UTC
The following vulnerability was found:
Go Ethereum (aka geth) through 1.10.21 allows attackers to increase rewards by mining blocks in certain situations, and using a manipulation of time-difference values to achieve replacement of main-chain blocks, aka Riskless Uncle Making (RUM), as exploited in the wild in 2020 through 2022.
- CVE-2022-37450 has been assigned by
[email protected] to track the vulnerability
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Uncle Maker: (Time)Stamping Out The Competition in Ethereum | by Aviv Yaish | Aug, 2022 | Medium | medium.com text/html |
![]() |
go-ethereum/forkchoice.go at 671094279e8d27f4b4c3c94bf8b636c26b473976 · ethereum/go-ethereum · GitHub | github.com text/html |
![]() |
Israeli researchers discovered the first consensus-level attack on Ethereum | Hacker News | news.ycombinator.com text/html |
![]() |
Please Wait... | Cloudflare | dx.doi.org text/html Inactive LinkNot Archived |
![]() |
There are currently no QIDs associated with this CVE
There are no known software configurations (CPEs) currently associated with this CVE
No vendor comments have been submitted for this CVE
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2022-37450 : Go Ethereum aka geth through 1.10.21 allows attackers to increase rewards by mining blocks in ce… twitter.com/i/web/status/1… | 2022-08-05 21:08:34 |
![]() |
Potentially Critical CVE Detected! CVE-2022-37450 Go Ethereum (aka geth) through 1.10.21 allows attackers to increa… twitter.com/i/web/status/1… | 2022-08-05 22:56:00 |