Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-23066

In Solana rBPF versions 0.2.26 and 0.2.27 are affected by Incorrect Calculation which is caused by improper implementation of sdiv instruction. This can lead to the wrong execution path, resulting in huge loss in specific cases. For example, the result of a sdiv instruction may decide whether to transfer tokens or not. The vulnerability affects both integrity and may cause serious availability problems.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.011
EPSS Ranking 76.8%
CVSS Severity
CVSS v3 Score 9.1
CVSS v2 Score 6.4
Products affected by CVE-2022-23066
  • Solana » Rbpf » Version: 0.2.26
    cpe:2.3:a:solana:rbpf:0.2.26
  • Solana » Rbpf » Version: 0.2.27
    cpe:2.3:a:solana:rbpf:0.2.27


Contact Us

Shodan ® - All rights reserved