5

CVE-2013-2272

The penny-flooding protection mechanism in the CTxMemPool::accept method in bitcoind and Bitcoin-Qt before 0.4.9rc1, 0.5.x before 0.5.8rc1, 0.6.0 before 0.6.0.11rc1, 0.6.1 through 0.6.5 before 0.6.5rc1, and 0.7.x before 0.7.3rc1 allows remote attackers to determine associations between wallet addresses and IP addresses via a series of large Bitcoin transactions with insufficient fees.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
BitcoinBitcoin-qt Updaterc4 Version <= 0.4.8
BitcoinBitcoin-qt Version0.4 Updaterc4
BitcoinBitcoin-qt Version0.5.0 Updaterc1
BitcoinBitcoin-qt Version0.5.0.4
BitcoinBitcoin-qt Version0.5.1 Updaterc1
BitcoinBitcoin-qt Version0.5.3.0
BitcoinBitcoin-qt Version0.5.7
BitcoinBitcoin-qt Version0.6.0.10 Updaterc4
BitcoinBitcoin-qt Version0.6.3
BitcoinBitcoin-qt Version0.7.0 Updaterc1
BitcoinBitcoin-qt Version0.7.1
BitcoinBitcoin-qt Version0.7.2
BitcoinBitcoin Core Version0.3.4
BitcoinBitcoin Core Version0.3.5
BitcoinBitcoin Core Version0.3.8
BitcoinBitcoin Core Version0.3.10
BitcoinBitcoin Core Version0.3.11
BitcoinBitcoin Core Version0.3.12
BitcoinBitcoin Core Version0.4.0
BitcoinBitcoin Core Version0.4.1
BitcoinBitcoin Core Version0.4.1 Updaterc6
BitcoinBitcoin Core Version0.4.2
BitcoinBitcoin Core Version0.4.3
BitcoinBitcoin Core Version0.4.4
BitcoinBitcoin Core Version0.4.4 Updaterc2
BitcoinBitcoin Core Version0.4.5
BitcoinBitcoin Core Version0.4.6
BitcoinBitcoin Core Version0.4.7 Updaterc2
BitcoinBitcoin Core Version0.5.0 Updaterc
BitcoinBitcoin Core Version0.5.3
BitcoinBitcoin Core Version0.5.3.1
BitcoinBitcoin Core Version0.5.4
BitcoinBitcoin Core Version0.5.5
BitcoinBitcoin Core Version0.5.6 Updaterc2
BitcoinBitcoin Core Version0.6.0.1
BitcoinBitcoin Core Version0.6.0.2
BitcoinBitcoin Core Version0.6.0.3
BitcoinBitcoin Core Version0.6.0.4
BitcoinBitcoin Core Version0.6.0.5
BitcoinBitcoin Core Version0.6.0.6
BitcoinBitcoin Core Version0.6.0.7
BitcoinBitcoin Core Version0.6.0.8
BitcoinBitcoin Core Version0.6.1
BitcoinBitcoin Core Version0.6.2
BitcoinBitcoind Updaterc4 Version <= 0.4.4
BitcoinBitcoind Version0.5.7
BitcoinBitcoind Version0.6.0.0
BitcoinBitcoind Version0.6.0.10 Updaterc4
BitcoinBitcoind Version0.6.3
BitcoinBitcoind Version0.6.4 Updaterc4
BitcoinBitcoind Version0.7.0 Updaterc1
BitcoinBitcoind Version0.7.1
BitcoinBitcoind Version0.7.2
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.22% 0.417
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.