High severity7.5NVD Advisory· Published Nov 18, 2024· Updated Jun 17, 2026
CVE-2019-25220
CVE-2019-25220
Description
Bitcoin Core before 24.0.1 allows remote attackers to cause a denial of service (daemon crash) via a flood of low-difficulty header chains (aka a "Chain Width Expansion" attack) because a node does not first verify that a presented chain has enough work before committing to store it.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:bitcoin:bitcoin_core:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:bitcoin:bitcoin_core:*:*:*:*:*:*:*:*range: <24.0.1
- (no CPE)range: <24.0.1
- Bitcoin Core/Bitcoin Coredescription
Patches
Vulnerability mechanics
References
3- bitcoincore.org/en/2024/09/18/disclose-headers-oomnvdVendor Advisory
- en.bitcoin.it/wiki/Common_Vulnerabilities_and_ExposuresnvdThird Party Advisory
- lists.linuxfoundation.org/pipermail/bitcoin-dev/2019-October/017354.htmlnvdMailing List
News mentions
0No linked articles in our index yet.