#VU84357 Security features bypass in Bitcoin Knots - CVE-2023-40258
Published: December 12, 2023
Bitcoin Knots
Bitcoin Knots
Description
The vulnerability allows a local user to bypass implemented security restrictions.
The vulnerability exists due to an unspecified error in the extended rpcauth wallet-restriction syntax, which is intended to enable semi-trusted local applications using the Bitcoin Knots API to access only specific wallets and not others. A local user can bypass implemented security restrictions.