Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-rv9v-r4vm-gj8x | Miniscript allows stack consumption |
Fri, 06 Sep 2024 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-674 | |
| CPEs | cpe:2.3:a:rust-bitcoin:miniscript:*:*:*:*:*:*:*:* | |
| Metrics |
ssvc
|
Wed, 21 Aug 2024 13:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Rust-bitcoin
Rust-bitcoin miniscript |
|
| Weaknesses | CWE-787 | |
| CPEs | cpe:2.3:a:rust-bitcoin:miniscript:*:*:*:*:*:rust:*:* | |
| Vendors & Products |
Rust-bitcoin
Rust-bitcoin miniscript |
|
| Metrics |
cvssV3_1
|
Mon, 19 Aug 2024 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | The Miniscript (aka rust-miniscript) library before 12.2.0 for Rust allows stack consumption because it does not properly track tree depth. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-13T13:28:09.838Z
Reserved: 2024-08-19T00:00:00.000Z
Link: CVE-2024-44073
Updated: 2024-08-19T18:02:57.820Z
Status : Modified
Published: 2024-08-19T03:15:03.790
Modified: 2024-09-06T17:35:17.523
Link: CVE-2024-44073
No data.
OpenCVE Enrichment
No data.
Github GHSA