Difference between revisions of "Common Vulnerabilities and Exposures"

From Bitcoin Wiki
Jump to: navigation, search
m (meh, it's approx anyhow)
m
Line 41: Line 41:
 
| 0.4.1, 0.5.0
 
| 0.4.1, 0.5.0
 
| [https://bitcointalk.org/index.php?topic=51604.0 Announcement] [https://bitcointalk.org/index.php?topic=51474.0 Finding] [http://bitcoin.org/releases/2011/11/21/v0.5.0.html 0.5.0]
 
| [https://bitcointalk.org/index.php?topic=51604.0 Announcement] [https://bitcointalk.org/index.php?topic=51474.0 Finding] [http://bitcoin.org/releases/2011/11/21/v0.5.0.html 0.5.0]
|bgcolor=yellow| 88.5%
+
|bgcolor=yellow| 88%
 
|-
 
|-
 
| CVE-2012-1909
 
| CVE-2012-1909
Line 49: Line 49:
 
| BIP 30, 0.4.4, 0.5.3
 
| BIP 30, 0.4.4, 0.5.3
 
| [https://bitcointalk.org/index.php?topic=67738.0 Announcement] [https://en.bitcoin.it/wiki/BIP_0030 Fix]
 
| [https://bitcointalk.org/index.php?topic=67738.0 Announcement] [https://en.bitcoin.it/wiki/BIP_0030 Fix]
|bgcolor=pink| 29.1%
+
|bgcolor=pink| 29%
 
|-
 
|-
 
| CVE-2012-1910
 
| CVE-2012-1910
Line 57: Line 57:
 
| 0.5.3.1, 0.5.4, 0.6.0rc4
 
| 0.5.3.1, 0.5.4, 0.6.0rc4
 
| [https://bitcointalk.org/index.php?topic=69120.0 Announcement]
 
| [https://bitcointalk.org/index.php?topic=69120.0 Announcement]
|bgcolor=pink| 25.6%
+
|bgcolor=pink| 25%
 
|-
 
|-
 
| CVE-2012-2459
 
| CVE-2012-2459
Line 65: Line 65:
 
| 0.4.6, 0.5.5, 0.6.0.7, and 0.6.2
 
| 0.4.6, 0.5.5, 0.6.0.7, and 0.6.2
 
| [https://bitcointalk.org/index.php?topic=81749.0 Announcement]
 
| [https://bitcointalk.org/index.php?topic=81749.0 Announcement]
|bgcolor=pink| 16.3%
+
|bgcolor=pink| 16%
 
|}
 
|}

Revision as of 21:26, 29 May 2012

CVE Announced Affects Flaw Fixed in versions Links Live
CVE-2010-5137 2010-07-28 wxBitcoin and bitcoind OP_LSHIFT crash 0.3.5 Incident 100%
CVE-2010-5138 2010-07-29 wxBitcoin and bitcoind Unlimited SigOp DoS 0.3.? Incident 100%
CVE-2010-5139 2010-08-15 wxBitcoin and bitcoind Combined output overflow 0.3.11 Incident Discovery 100%
CVE-2010-5140 2010-09-29 wxBitcoin and bitcoind Sending coins w/o sufficient fees 0.3.13 Incident Initial reports 100%
CVE-2011-4447 2011-11-11 wxBitcoin and bitcoind Wallet (non-)encryption 0.4.1, 0.5.0 Announcement Finding 0.5.0 88%
CVE-2012-1909 2012-03-07 Bitcoin protocol Transaction overwriting BIP 30, 0.4.4, 0.5.3 Announcement Fix 29%
CVE-2012-1910 2012-03-17 Bitcoin-Qt for Windows MingW non-multithreading 0.5.3.1, 0.5.4, 0.6.0rc4 Announcement 25%
CVE-2012-2459 2012-05-14 bitcoind and Bitcoin-Qt TBD 0.4.6, 0.5.5, 0.6.0.7, and 0.6.2 Announcement 16%