Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-mw3q-r9wh-h2ff | nimiq-primitives: Panic DoS in trie chunk processing via ROOT-keyed item |
Fri, 12 Jun 2026 11:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Wed, 10 Jun 2026 02:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Nimiq
Nimiq core-rs-albatross |
|
| Vendors & Products |
Nimiq
Nimiq core-rs-albatross |
Wed, 10 Jun 2026 00:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Nimiq is a Rust implementation of the Nimiq Proof-of-Stake protocol based on the Albatross consensus algorithm. Prior to version 1.5.0, a remote, unauthenticated denial-of-service vulnerability in MerkleRadixTrie::put_chunk allows any state-sync peer to crash any node performing state synchronization (freshly joining nodes and recovering nodes). This issue has been patched in version 1.5.0. | |
| Title | nimiq-primitives: Panic DoS in trie chunk processing via ROOT-keyed item | |
| Weaknesses | CWE-248 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2026-06-10T14:38:24.123Z
Reserved: 2026-05-14T20:42:31.368Z
Link: CVE-2026-46545
Updated: 2026-06-10T14:38:16.604Z
Status : Deferred
Published: 2026-06-10T00:16:54.770
Modified: 2026-06-10T19:37:41.437
Link: CVE-2026-46545
No data.
OpenCVE Enrichment
Updated: 2026-06-10T02:15:19Z
Github GHSA