Home

Description

A buffer over-read in the PublicKey::verify() method of Binance - Trust Wallet Core before commit 5668c67 allows attackers to cause a Denial of Service (DoS) via a crafted input.

PUBLISHED Reserved 2025-12-08 | Published 2026-01-20 | Updated 2026-01-21 | Assigner mitre

References

github.com/trustwallet/wallet-core/commit/5668c67

gist.github.com/inkman97/b791189338f73b758c31a7db3cd50c2d

cve.org (CVE-2025-66692)

nvd.nist.gov (CVE-2025-66692)

Download JSON