Beveiligingsadvies

CVE-2015-6964

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-09-25 00:00:00
Laatst bijgewerkt 2024-09-24 17:39:24
Toegewezen door mitre
CVSS-score 5.3
Status PUBLISHED

Beschrijving

MultiBit HD before 0.1.2 allows attackers to conduct bit-flipping attacks that insert unspendable Bitcoin addresses into the list that MultiBit uses to send fees to the developers. (Attackers cannot realistically steal these fees for themselves.) This occurs because there is no message authentication code (MAC).