Vulnerability Description
The Proof-of-Stake (PoS) Ethereum consensus protocol through 2021-10-19 allows an adversary to cause a denial of service (long-range consensus chain reorganizations), even when this adversary has little stake and cannot influence network message propagation. This can cause a protocol stall, or an increase in the profits of individual validators.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Proof-Of-Stake Ethereum Project | Proof-Of-Stake Ethereum | <= 2021-10-19 |
References
- https://arxiv.org/abs/2110.10086Third Party Advisory
- https://arxiv.org/abs/2110.10086Third Party Advisory
FAQ
What is CVE-2021-42766?
CVE-2021-42766 is a vulnerability with a CVSS score of 9.1 (CRITICAL). The Proof-of-Stake (PoS) Ethereum consensus protocol through 2021-10-19 allows an adversary to cause a denial of service (long-range consensus chain reorganizations), even when this adversary has litt...
How severe is CVE-2021-42766?
CVE-2021-42766 has been rated CRITICAL with a CVSS base score of 9.1/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-42766?
Check the references section above for vendor advisories and patch information. Affected products include: Proof-Of-Stake Ethereum Project Proof-Of-Stake Ethereum.