The blockchain node in FISCO-BCOS V2.7.2 may have a bug...
High severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Jan 27, 2023
Description
Published by the National Vulnerability Database
Jun 24, 2021
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Jan 27, 2023
The blockchain node in FISCO-BCOS V2.7.2 may have a bug when dealing with unformatted packet and lead to a crash. A malicious node can send a packet continuously. The packet is in an incorrect format and cannot be decoded by the node correctly. As a result, the node may consume the memory sustainably and crash. More details are shown at: FISCO-BCOS/FISCO-BCOS#1951
References