Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ethereumjs-vm 2.4.0 allows attackers to cause a denial of service (vm.runCode failure and REVERT) via a "code: Buffer.from(my_code, 'hex')" attribute. NOTE: the vendor disputes this because REVERT is a normal bytecode that can be triggered from high-level source code, leading to a normal programmatic execution result.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ethereumjs-vm 安全漏洞
Vulnerability Description
ethereumjs-vm是一款基于JavaScript实现的以太坊虚拟机。 ethereumjs-vm 2.4.0版本中存在安全漏洞。攻击者可借助‘code: Buffer.from(my_code, 'hex')’属性利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A