CVE-2010-5141General(bitcoin / bitcoin_core)

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

wxBitcoin and bitcoind before 0.3.5 do not properly handle script opcodes in Bitcoin transactions, which allows remote attackers to spend bitcoins owned by other users via unspecified vectors.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-264

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

NONE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • bitcoin_core
  • wxbitcoin

Threat summary

  • 2 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Technical details provided in 1 signal
  • General: 1 classified signal
  • Disclosure: 1 classified signal
  • Peaked 1d ago at 1 mentions (2026-04-03); latest day: 1
  • 2 total mentions across 2 days

Affected systems

Vendors
Products
bitcoin_corewxbitcoin

Deep dive

Activity timeline2 mentions / 2d
00111Mentions · 2026-04-03: 1Mentions · 2026-05-10: 1Technical Details · 2026-04-03: 104-0305-10
Signal classification2 categories
General
150.0%
Disclosure
150.0%
Referenced assets1 URL
By indicator
Classification over time
DateTotalLabels
2026-04-031
General1
2026-05-101
Disclosure1
Full discourse2 posts
  • artforz@real_artforz
    Disclosure

    @CoinImpulse Solche schwurbelnden Armleuchter gab's 2010 auch schon. Witzigerweise habe ich damals echte Sicherheitslücken in bitcoind gefunden... CVE-2010-5137 und CVE-2010-5141.

    Post summary

    The user claims to have discovered real security vulnerabilities in bitcoind (CVE-2010-5137 and CVE-2010-5141) but offers no further technical details or proof of exploitation.

    00000616
    54 followersView on X
  • deKirill@kir_varlamov
    General

    @newmichwill Headless doesn't mean safe. the OG ran a full node with p2p ports open (wide attack surface) and many vulnerabilities existed in it. See this CVE for example https://www.cvedetails.com/cve/CVE-2010-5141/ plus multiple C buffer overflow issues. Today it would be hacked in minutes

    Post summary

    The tweet references an old CVE and notes typical buffer overflow flaws in a headless node, offering no proof‑of‑concept, exploit, or mitigation details.

    0000071
    328 followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appbitcoinbitcoin_core---
Appbitcoinwxbitcoin---

Explore more