Vulnerabilities > CVE-2022-29077 - Out-of-bounds Write vulnerability in Ripple Rippled

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
ripple
CWE-787
critical

Summary

A heap-based buffer overflow exists in rippled before 1.8.5. The vulnerability allows attackers to cause a crash or execute commands remotely on a rippled node, which may lead to XRPL mainnet DoS or compromise. This exposes all digital assets on the XRPL to a security threat.

Vulnerable Configurations

Part Description Count
Application
Ripple
79

Common Weakness Enumeration (CWE)