CVE-2024-52922: Bitcoin Core

Medium severity, CVSS 6.5. EPSS: 0.3% chance of exploitation in the next 30 days.

In Bitcoin Core before 25.1, an attacker can cause a node to not download the latest block, because there can be minutes of delay when an announcing peer stalls instead of complying with the peer-to-peer protocol specification.

Affected products

  • Bitcoin Bitcoin Core: before 25.1 (fixed in 25.1)

Published 2024-11-18. Last modified 2026-06-17.