Grin before 3.1.0 allows attackers to adversely affect availability of data on a Mimblewimble blockchain.
The product does not release or incorrectly releases a resource before it is made available for re-use.
Link | Tags |
---|---|
https://github.com/mimblewimble/grin/pull/3236 | third party advisory patch |
https://github.com/mimblewimble/grin-security/blob/master/CVEs/CVE-2020-12439.md | third party advisory |
https://github.com/mimblewimble/grin/issues/3235 | patch third party advisory issue tracking |