Description
A vulnerability has been found in ghostlander Halcyon and classified as critical. Affected by this vulnerability is the function CBlock::AddToBlockIndex of the file src/main.cpp of the component Block Verification. The manipulation leads to improper access controls. The attack can be launched remotely. Upgrading to version 1.1.1.0-hal is able to address this issue. The identifier of the patch is 0675b25ae9cc10b5fdc8ea3a32c642979762d45e. It is recommended to upgrade the affected component. The identifier VDB-217417 was assigned to this vulnerability.
References (4)
Core 4
Core References
Permissions Required, Third Party Advisory vdb-entry
technical-description
https://vuldb.com/?id.217417
Permissions Required, Third Party Advisory signature
permissions-required
https://vuldb.com/?ctiid.217417
Release Notes patch
https://github.com/ghostlander/Halcyon/releases/tag/v1.1.1.0-hal
Scores
CVSS v3
6.3
EPSS
0.0066
EPSS Percentile
46.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Details
CWE
CWE-284
Status
published
Products (1)
halcyon_project/halcyon
< 1.1.1.0
Published
Jan 04, 2023
Tracked Since
Feb 18, 2026