CVE-2024-45244
- EPSS 0.61%
- Veröffentlicht 25.08.2024 02:15:03
- Zuletzt bearbeitet 06.10.2025 15:16:02
Hyperledger Fabric through 3.0.0 and 2.5.x through 2.5.9 do not verify that a request has a timestamp within the expected time window.
CVE-2023-46132
- EPSS 0.18%
- Veröffentlicht 14.11.2023 21:15:11
- Zuletzt bearbeitet 21.11.2024 08:27:56
Hyperledger Fabric is an open source permissioned distributed ledger framework. Combining two molecules to one another, called "cross-linking" results in a molecule with a chemical formula that is composed of all atoms of the original two molecules. ...
CVE-2022-45196
- EPSS 0.27%
- Veröffentlicht 12.11.2022 20:15:09
- Zuletzt bearbeitet 01.05.2025 19:15:56
Hyperledger Fabric 2.3 allows attackers to cause a denial of service (orderer crash) by repeatedly sending a crafted channel tx with the same Channel name. NOTE: the official Fabric with Raft prevents exploitation via a locking mechanism and a check ...
CVE-2022-36023
- EPSS 0.8%
- Veröffentlicht 18.08.2022 16:15:08
- Zuletzt bearbeitet 21.11.2024 07:12:12
Hyperledger Fabric is an enterprise-grade permissioned distributed ledger framework for developing solutions and applications. If a gateway client application sends a malformed request to a gateway peer it may crash the peer node. Version 2.4.6 check...
CVE-2022-31121
- EPSS 0.65%
- Veröffentlicht 07.07.2022 18:15:09
- Zuletzt bearbeitet 21.11.2024 07:03:56
Hyperledger Fabric is a permissioned distributed ledger framework. In affected versions if a consensus client sends a malformed consensus request to an orderer it may crash the orderer node. A fix has been added in commit 0f1835949 which checks for m...