← Back to CVEs
CVE-2014-4503
N/ADescription
The parse_notify function in util.c in sgminer before 4.2.2 and cgminer 3.3.0 through 4.0.1 allows man-in-the-middle attackers to cause a denial of service (application exit) via a crafted (1) bbversion, (2) prev_hash, (3) nbit, or (4) ntime parameter in a mining.notify action stratum message.
CVE Details
CVSS v3.1 ScoreN/A
Published7/23/2014
Last Modified4/12/2025
Sourcenvd
Honeypot Sightings0
Affected Products
cgminer_project:cgminersgminer_project:sgminer
Weaknesses (CWE)
CWE-20
References
http://seclists.org/fulldisclosure/2014/Jul/120(cve@mitre.org)
https://github.com/sgminer-dev/sgminer/commit/910c36089940e81fb85c65b8e63dcd2fac71470c(cve@mitre.org)
http://seclists.org/fulldisclosure/2014/Jul/120(af854a3a-2127-422b-91ae-364da2661108)
https://github.com/sgminer-dev/sgminer/commit/910c36089940e81fb85c65b8e63dcd2fac71470c(af854a3a-2127-422b-91ae-364da2661108)
IOC Correlations
No correlations recorded
This product uses data from the NVD API but is not endorsed or certified by the NVD.