bitcoin -- Denial of Service and Possible Mining Inflation

Affected packages
bitcoin < 0.16.3
bitcoin-daemon < 0.16.3


VuXML ID 40a844bf-c430-11e8-96dc-000743165db0
Discovery 2018-09-17
Entry 2018-09-29

Bitcoin Core reports:

CVE-2018-17144, a fix for which was released on September 18th in Bitcoin Core versions 0.16.3 and 0.17.0rc4, includes both a Denial of Service component and a critical inflation vulnerability. It was originally reported to several developers working on Bitcoin Core, as well as projects supporting other cryptocurrencies, including ABC and Unlimited on September 17th as a Denial of Service bug only, however we quickly determined that the issue was also an inflation vulnerability with the same root cause and fix.


CVE Name CVE-2018-17144