blob: 5ebc8ce6e8d35aa1a6a0bd8c3c573962119189be [file] [log] [blame]
module: github.com/ethereum/go-ethereum
package: github.com/ethereum/go-ethereum/core
versions:
- introduced: v1.9.4
- fixed: v1.9.20
description: |
Due to an incorrect state calculation, a specific set of transactions could cause a consensus disagreement,
causing users of this package to reject a canonical chain.
cve: CVE-2020-26265
credit: John Youngseok Yang (Software Platform Lab)
symbols:
- StateDB.createObject
published: 2021-07-28T12:00:00Z
links:
commit: https://github.com/ethereum/go-ethereum/commit/87c0ba92136a75db0ab2aba1046d4a9860375d6a
pr: https://github.com/ethereum/go-ethereum/pull/21080
context:
- https://github.com/advisories/GHSA-xw37-57qp-9mm4