Skip to content

Permit load cell data from memory

Moderate
doitian published GHSA-29c2-65rj-h343 Apr 25, 2021

Package

No package listed

Affected versions

< 0.39.0

Patched versions

0.35.2, 0.36.1, 0.37.1, 0.38.2

Description

Impact

The faulty nodes will reject transactions which calls load_cell_data syscall but the input cell is still in the mempool. They also ban other nodes and cause the network separation.

Patches

0.35.2, 0.36.1, 0.37.1, 0.38.2

Severity

Moderate

CVE ID

No known CVE

Weaknesses

No CWEs