Lightning Labs lnd before 0.13.3-beta allows loss of funds because of dust HTLC exposure.
References
Link | Resource |
---|---|
https://bitcoinmagazine.com/technical/good-griefing-a-lingering-vulnerability-on-lightning-network-that-still-needs-fixing | Press/Media Coverage Third Party Advisory |
https://github.com/lightningnetwork/lnd/blob/master/docs/release-notes/release-notes-0.13.3.md | Release Notes Third Party Advisory |
https://github.com/lightningnetwork/lnd/releases/tag/v0.13.3-beta | Third Party Advisory |
https://lists.linuxfoundation.org/pipermail/lightning-dev/2020-May/002714.html | Mailing List Vendor Advisory |
https://lists.linuxfoundation.org/pipermail/lightning-dev/2021-October/003257.html | Mailing List Vendor Advisory |
https://lists.linuxfoundation.org/pipermail/lightning-dev/2021-October/003264.html | Exploit Mailing List Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
12 Jul 2022, 17:42
Type | Values Removed | Values Added |
---|---|---|
CWE | CWE-770 |
14 Oct 2021, 19:00
Type | Values Removed | Values Added |
---|---|---|
References | (MISC) https://github.com/lightningnetwork/lnd/blob/master/docs/release-notes/release-notes-0.13.3.md - Release Notes, Third Party Advisory | |
References | (MISC) https://github.com/lightningnetwork/lnd/releases/tag/v0.13.3-beta - Third Party Advisory | |
References | (MISC) https://lists.linuxfoundation.org/pipermail/lightning-dev/2021-October/003257.html - Mailing List, Vendor Advisory | |
References | (MISC) https://lists.linuxfoundation.org/pipermail/lightning-dev/2020-May/002714.html - Mailing List, Vendor Advisory | |
References | (MISC) https://lists.linuxfoundation.org/pipermail/lightning-dev/2021-October/003264.html - Exploit, Mailing List, Vendor Advisory | |
References | (MISC) https://bitcoinmagazine.com/technical/good-griefing-a-lingering-vulnerability-on-lightning-network-that-still-needs-fixing - Press/Media Coverage, Third Party Advisory | |
CVSS |
v2 : v3 : |
v2 : 7.5
v3 : 8.6 |
CPE | cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.0:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.0:beta_rc1:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta_rc5:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.1:beta_rc1:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.1:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.1:beta_rc1:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta_rc4:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.1:beta_rc4:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.1:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.1:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta_rc4:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta_rc3:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.1:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta_rc6:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:*:*:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.0:beta_rc3:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.0:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.0:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.0:beta_rc4:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.0:beta_rc3:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta_rc1:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.0:-:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta_rc6:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.0:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.1:beta_rc3:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta_rc5:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.0:beta_rc5:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.2:beta:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.1:beta_rc5:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.1:beta_rc3:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.3:beta_rc2:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.11.0:beta_rc1:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.13.0:beta_rc4:*:*:*:*:*:* cpe:2.3:a:lightning_network_daemon_project:lightning_network_daemon:0.12.0:beta_rc1:*:*:*:*:*:* |
|
CWE | CWE-863 |
04 Oct 2021, 22:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
04 Oct 2021, 17:24
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2021-10-04 17:15
Updated : 2024-02-04 22:08
NVD link : CVE-2021-41593
Mitre link : CVE-2021-41593
CVE.ORG link : CVE-2021-41593
JSON object : View
Products Affected
lightning_network_daemon_project
- lightning_network_daemon
CWE
CWE-770
Allocation of Resources Without Limits or Throttling