Resource exhaustion in go-ethereum - CVE-2024-32972
Published: May 7, 2024
go-ethereum
Detailed vulnerability description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to application does not properly control consumption of internal resources when handling p2p messages. A remote attacker can send specially crafted p2p messages to the application and perform a denial of service (DoS) attack.