CVE-2022-37450
05.08.2022, 21:15
Go Ethereum (aka geth) through 1.10.21 allows attackers to increase rewards by mining blocks in certain situations, and using a manipulation of time-difference values to achieve replacement of main-chain blocks, aka Riskless Uncle Making (RUM), as exploited in the wild in 2020 through 2022.Enginsight
Vendor | Product | Version |
---|---|---|
ethereum | go_ethereum | 𝑥 ≤ 1.10.21 |
𝑥
= Vulnerable software versions
References