CVE-2026-40094
- EPSS 0.3%
- Veröffentlicht 20.05.2026 21:27:40
- Zuletzt bearbeitet 23.07.2026 15:10:00
nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In versions 1.3.0 and prior, network-libp2p discovery accepts signed PeerContact updates from untrusted peers and stores them in a peer contact book, eventually leadi...
CVE-2026-40092
- EPSS 0.63%
- Veröffentlicht 20.05.2026 21:16:40
- Zuletzt bearbeitet 23.07.2026 15:10:00
nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In versions 1.3.0 and below, a malicious network peer can crash any Nimiq full node by publishing a crafted Kademlia DHT record. The maliciously crafted record would ...
CVE-2026-33471
- EPSS 0.22%
- Veröffentlicht 22.04.2026 19:13:04
- Zuletzt bearbeitet 24.04.2026 17:11:40
nimiq-block contains block primitives to be used in Nimiq's Rust implementation. `SkipBlockProof::verify` computes its quorum check using `BitSet.len()`, then iterates `BitSet` indices and casts each `usize` index to `u16` (`slot as u16`) for slot lo...
CVE-2026-34069
- EPSS 0.3%
- Veröffentlicht 13.04.2026 23:55:52
- Zuletzt bearbeitet 24.04.2026 17:10:45
nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. In versions 1.2.2 and below, an unauthenticated p2p peer can cause the RequestMacroChain message handler task to panic. ...
CVE-2026-32605
- EPSS 0.46%
- Veröffentlicht 13.04.2026 18:54:58
- Zuletzt bearbeitet 24.04.2026 17:11:26
nimiq/core-rs-albatross is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.3.0, an untrusted peer could crash a validator by publishing a signed tendermint proposal message whe...
CVE-2026-40093
- EPSS 0.31%
- Veröffentlicht 09.04.2026 21:16:11
- Zuletzt bearbeitet 24.04.2026 17:11:14
nimiq-blockchain provides persistent block storage for Nimiq's Rust implementation. In 1.3.0 and earlier, block timestamp validation enforces that timestamp >= parent.timestamp for non-skip blocks and timestamp == parent.timestamp + MIN_PRODUCER_TIME...