{"id":"CVE-2018-19155","details":"navcoin through 4.3.0 (a chain-based proof-of-stake cryptocurrency) allows a remote denial of service. The attacker sends invalid headers/blocks. The attack requires no stake and can fill the victim's disk and RAM.","modified":"2026-04-10T04:08:02.855470Z","published":"2019-11-05T21:15:12.293Z","references":[{"type":"WEB","url":"https://medium.com/%40dsl_uiuc/fake-stake-attacks-on-chain-based-proof-of-stake-cryptocurrencies-b8b05723f806"},{"type":"ADVISORY","url":"http://fc19.ifca.ai/preproceedings/180-preproceedings.pdf"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/navcoin/navcoin-core","events":[{"introduced":"0"},{"last_affected":"6544ea35e21f4d667b32701048bafeebf974d001"}],"database_specific":{"versions":[{"introduced":"0"},{"last_affected":"4.3.0"}]}}],"versions":["4.0.3","4.0.4","4.0.5","4.0.6","4.1.0","4.2.0","4.3.0","v4.3.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2018-19155.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}