CVE-2023-37192
HIGH 7.5EPSS 0.6%
Memory management and protection issues in Bitcoin Core v22 allows attackers to modify the stored sending address within the app's memory, potentially allowing them to redirect Bitcoin transactions to wallets of their own choosing.
- CVSS v3.1
- 7.5 HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N - EPSS
- 0.57% chance of exploitation in the next 30 days, 45th percentile
- Published
- 2023-07-06
- Updated
- 2024-11-20
Proof-of-concept exploits (2)
- https://satoshihunter1.blogspot.com/2023/06/the-bitcoin-app-is-vulnerable-to-hackers.html
- https://www.youtube.com/watch?v=oEl4M1oZim0