Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 484134 (CVE-2013-4627) - <net-p2p/bitcoind-0.8.4 - multiple vulnerabilities (CVE-2013-4627)
Summary: <net-p2p/bitcoind-0.8.4 - multiple vulnerabilities (CVE-2013-4627)
Status: RESOLVED FIXED
Alias: CVE-2013-4627
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All Linux
: Normal minor (vote)
Assignee: Gentoo Security
URL: http://sourceforge.net/mailarchive/fo...
Whiteboard: B3 [noglsa]
Keywords:
Depends on: 480096
Blocks:
  Show dependency tree
 
Reported: 2013-09-07 21:03 UTC by Juraj Variny
Modified: 2013-09-27 08:53 UTC (History)
4 users (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Juraj Variny 2013-09-07 21:03:16 UTC
Versions 0.8.0 through 0.8.3 are vulnerable to critical denial-of-service attack, there are also another vulnerabilities: CVE-2013-4165 , CVE-2013-4627 and bug fixes. Please bump version, no other changes in ebuild should be necessary. 
Exactly same concern is with net-p2p/bitcoin-qt .

Reproducible: Always
Comment 1 Jeroen Roovers (RETIRED) gentoo-dev 2013-09-08 14:51:35 UTC
Security issues
---------------

An attacker could send a series of messages that resulted in
an integer division-by-zero error in the Bloom Filter handling
code, causing the Bitcoin-Qt or bitcoind process to crash.
Bloom filters were introduced with version 0.8, so versions 0.8.0
through 0.8.3 are vulnerable to this critical denial-of-service attack.

A constant-time algorithm is now used to check RPC password
guess attempts; fixes https://github.com/bitcoin/bitcoin/issues/2838
(CVE-2013-4165)

Implement a better fix for the fill-memory-with-orphan-transactions
attack that was fixed in 0.8.3. See
https://bitslog.wordpress.com/2013/07/18/buggy-cve-2013-4627-patch-open-new-vectors-of-attack/
for a description of the weaknesses of the previous fix.
(CVE-2013-4627)
Comment 2 Andrew Hamilton 2013-09-09 02:16:53 UTC
CVE-2013-4165 is already in Bug 478286
Comment 3 Luke-Jr 2013-09-09 02:34:51 UTC
0.8.4 should be in the tree now for stabilisation