High severity8.2NVD Advisory· Published Jan 19, 2018· Updated Jun 17, 2026
CVE-2017-14457
CVE-2017-14457
Description
An exploitable information leak/denial of service vulnerability exists in the libevm (Ethereum Virtual Machine) create2 opcode handler of CPP-Ethereum. A specially crafted smart contract code can cause an out-of-bounds read leading to memory disclosure or denial of service. An attacker can create/send malicious a smart contract to trigger this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Talos/CPP-Ethereumv5Range: Ethereum commit 4e1015743b95821849d001618a7ce82c7c073768
Patches
Vulnerability mechanics
References
2- www.securityfocus.com/bid/102475nvdThird Party AdvisoryVDB Entry
- www.talosintelligence.com/vulnerability_reports/TALOS-2017-0503nvdThird Party Advisory
News mentions
0No linked articles in our index yet.