Denial of Service in Go-Ethereum
High severity
GitHub Reviewed
Published
Mar 5, 2022
to the GitHub Advisory Database
•
Updated Sep 18, 2023
Description
Published by the National Vulnerability Database
Mar 4, 2022
Published to the GitHub Advisory Database
Mar 5, 2022
Reviewed
Mar 9, 2022
Last updated
Sep 18, 2023
A design flaw in Go-Ethereum 1.10.12 and older versions allows an attacker node to send 5120 future transactions with a high gas price in one message, which can purge all of pending transactions in a victim node's memory pool, causing a denial of service (DoS).
References