CVE-2022-29077

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
25/04/2022
Last modified:
04/05/2022

Description

A heap-based buffer overflow exists in rippled before 1.8.5. The vulnerability allows attackers to cause a crash or execute commands remotely on a rippled node, which may lead to XRPL mainnet DoS or compromise. This exposes all digital assets on the XRPL to a security threat.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ripple:rippled:*:*:*:*:*:*:*:* 1.8.5 (excluding)