{"id":"CVE-2021-42219","aliases":["GHSA-vrcc-g6vj-mh5w"],"url":"https://o3.security/vulnerability/CVE-2021-42219","summary":"Denial of service in go-ethereum","details":"Go-Ethereum v1.10.9 was discovered to contain an issue which allows attackers to cause a denial of service (DoS) via sending an excessive amount of messages to a node. This is caused by missing memory in the component /ethash/algorithm.go.","published":"2022-03-17T00:15:07.813Z","modified":"2026-08-07T16:57:46.607720Z","cvss":{"score":7.5,"severity":"HIGH","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"},"epss":{"score":0.01197,"percentile":0.65274,"asOf":"2026-08-23"},"cisaKev":null,"exploitsKnown":1,"affectedPackages":[{"ecosystem":"Go","name":"github.com/ethereum/go-ethereum","fixedVersion":null}],"fix":null,"references":[{"type":"EVIDENCE","url":"https://docs.google.com/document/d/1dYFSpNZPC0OV-n1mMqdc269u9yYU1XQy/edit?usp=sharing&ouid=112110745137218798745&rtpof=true&sd=true"}],"provenance":{"sources":["OSV.dev","FIRST.org (EPSS)"],"lastVerified":"2026-08-07T16:57:46.607720Z"}}