A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Service (DoS) via a crafted input.
Metrics
Affected Vendors & Products
References
History
Fri, 30 Jan 2026 20:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:trustwallet:trust_wallet_core:*:*:*:*:*:*:*:* |
Wed, 21 Jan 2026 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-126 | |
| Metrics |
cvssV3_1
|
Wed, 21 Jan 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Trustwallet
Trustwallet trust Wallet Core |
|
| Vendors & Products |
Trustwallet
Trustwallet trust Wallet Core |
Tue, 20 Jan 2026 20:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Service (DoS) via a crafted input. | |
| References |
|
Status: PUBLISHED
Assigner: mitre
Published: 2026-01-20T00:00:00.000Z
Updated: 2026-01-21T16:40:24.978Z
Reserved: 2025-12-08T00:00:00.000Z
Link: CVE-2025-66692
Updated: 2026-01-21T16:40:18.338Z
Status : Analyzed
Published: 2026-01-20T21:16:04.437
Modified: 2026-01-30T20:22:09.553
Link: CVE-2025-66692
No data.