CVE-2017-20180

Source
https://cve.org/CVERecord?id=CVE-2017-20180
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-20180.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2017-20180
Published
2023-03-06T11:15:09.813Z
Modified
2026-04-11T04:38:03.684755Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N CVSS Calculator
Summary
[none]
Details

A vulnerability classified as critical has been found in Zerocoin libzerocoin. Affected is the function CoinSpend::CoinSpend of the file CoinSpend.cpp of the component Proof Handler. The manipulation leads to insufficient verification of data authenticity. Continious delivery with rolling releases is used by this product. Therefore, no version details of affected nor updated releases are available. The patch is identified as ce103a09ec079d0a0ed95475992348bed6e860de. It is recommended to apply a patch to fix this issue. VDB-222318 is the identifier assigned to this vulnerability.

References

Affected packages

Git / github.com/zerocoin/libzerocoin

Affected ranges

Type
GIT
Repo
https://github.com/zerocoin/libzerocoin
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed
Type
GIT
Repo
https://github.com/zerocoin/libzerocoin
Events
Introduced
0 Unknown introduced commit / All previous commits are affected
Fixed

Affected versions

v0.*
v0.1alpha
v0.2alpha

Database specific

vanir_signatures
[
    {
        "signature_type": "Function",
        "source": "https://github.com/zerocoin/libzerocoin/commit/ce103a09ec079d0a0ed95475992348bed6e860de",
        "signature_version": "v1",
        "target": {
            "file": "CoinSpend.cpp",
            "function": "CoinSpend::CoinSpend"
        },
        "id": "CVE-2017-20180-8f706b33",
        "deprecated": false,
        "digest": {
            "function_hash": "125312985533685941205616749023858349998",
            "length": 1309.0
        }
    },
    {
        "signature_type": "Line",
        "source": "https://github.com/zerocoin/libzerocoin/commit/ce103a09ec079d0a0ed95475992348bed6e860de",
        "signature_version": "v1",
        "target": {
            "file": "CoinSpend.h"
        },
        "id": "CVE-2017-20180-aa6d82d9",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "194041169223052256669845637363596105894",
                "315280418852530399671758443515443271710",
                "71708705690321233920607261755056183973"
            ],
            "threshold": 0.9
        }
    },
    {
        "signature_type": "Line",
        "source": "https://github.com/zerocoin/libzerocoin/commit/ce103a09ec079d0a0ed95475992348bed6e860de",
        "signature_version": "v1",
        "target": {
            "file": "CoinSpend.cpp"
        },
        "id": "CVE-2017-20180-b4d2d424",
        "deprecated": false,
        "digest": {
            "line_hashes": [
                "20123363871489142640396109713814709050",
                "6570876380730098750354263163136206966",
                "140352040715213051974035289442242972378",
                "1780428799062492823297668211168586389"
            ],
            "threshold": 0.9
        }
    }
]
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "fixed": "2017-11-15"
            }
        ]
    }
]
source
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2017-20180.json"
vanir_signatures_modified
"2026-04-11T04:38:03Z"