Input validation error in go-ethereum - CVE-2022-29177
Published: May 11, 2022 / Updated: April 27, 2026
go-ethereum
Ethereum
Description
The vulnerability allows a remote attacker to cause a denial of service.
The vulnerability exists due to improper input validation in the p2p message handling logic when handling specially crafted p2p messages. A remote attacker can send a specially crafted p2p message to cause a denial of service.
Only nodes configured to use high verbosity logging are vulnerable.