Skip to content

DoS via malicious p2p message

Moderate
fjl published GHSA-mq3p-rrmp-79jg Jan 13, 2026

Package

gomod github.com/ethereum/go-ethereum (Go)

Affected versions

<= 1.16.7

Patched versions

>= 1.16.8

Description

Impact

An attacker can cause high CPU usage by sending a specially crafted p2p message.
More details to be released later.

Credit

This issue was reported to the Ethereum Foundation Bug Bounty Program by @Yenya030

Severity

Moderate

CVE ID

CVE-2026-22868

Weaknesses

No CWEs

Credits