Lucene search

K

Besu Security Vulnerabilities

cve
cve

CVE-2021-21369

Hyperledger Besu is an open-source, MainNet compatible, Ethereum client written in Java. In Besu before version 1.5.1 there is a denial-of-service vulnerability involving the HTTP JSON-RPC API service. If username and password authentication is enabled for the HTTP JSON-RPC API service, then prior ...

6.5CVSS

6.6AI Score

0.001EPSS

2021-03-09 06:15 PM
21
cve
cve

CVE-2021-41272

Besu is an Ethereum client written in Java. Starting in version 21.10.0, changes in the implementation of the SHL, SHR, and SAR operations resulted in the introduction of a signed type coercion error in values that represent negative values for 32 bit signed integers. Smart contracts that ask for s...

7.5CVSS

7.5AI Score

0.001EPSS

2021-12-13 09:15 PM
29
cve
cve

CVE-2022-36025

Besu is a Java-based Ethereum client. In versions newer than 22.1.3 and prior to 22.7.1, Besu is subject to an Incorrect Conversion between Numeric Types. An error in 32 bit signed and unsigned types in the calculation of available gas in the CALL operations (including DELEGATECALL) results in inco...

9.1CVSS

9.3AI Score

0.001EPSS

2022-09-24 02:15 AM
36
5