NRDAX
CLI Submit

← registry

NRDAX-T0001 - Addr Message Counter Overflow Crash

Fault termination · P2P and gossip · absent invariant · active · first seen 2024-01-01

provenance: Reproduced in NullRabbit's attack-reproduction pipeline

mechanism

CVE-2024-52919 (GHSA-qwp9-p9rr-h729): addr flood → CAddrMan 32-bit nIdCount overflow → assertion abort

live exposure

24 validators presently exposed · $271.3M aggregate stake · solana

Live figures from Slashr ↗, as of 2026-08-28. Aggregate only; validators are named on Slashr, not here.

instances (1)

chainprimitivefidelityoriginreproducer (bundle)source
litecoin btc_addr_overflow_flood lab reverse-engineered-cve btc_addr_overflow_flood CVE-2024-52919 ↗

references

related (Fault termination)

cite

https://nrdax.com/techniques/NRDAX-T0001

plain

NRDAX Registry. Technique NRDAX-T0001.

bibtex
@misc{nrdax_NRDAX_T0001,
  title = {Addr Message Counter Overflow Crash (NRDAX-T0001)},
  howpublished = {NRDAX Registry},
  url = {https://nrdax.com/techniques/NRDAX-T0001},
}
json (csl)
{
  "id": "nrdax-NRDAX-T0001",
  "type": "dataset",
  "title": "Addr Message Counter Overflow Crash (NRDAX-T0001)",
  "URL": "https://nrdax.com/techniques/NRDAX-T0001",
  "publisher": "NRDAX Registry"
}
badge

NRDAX-T0001 in the NRDAX registry

[![NRDAX-T0001 in the NRDAX registry](https://nrdax.com/badge/NRDAX-T0001.svg)](https://nrdax.com/techniques/NRDAX-T0001-addr-message-counter-overflow-crash)

use from the CLI

Retrieve or cite this technique from a script or the terminal with the NRDAX Python library & CLI.

Retrieve this technique
nrdax get NRDAX-T0001
Cite it (BibTeX)
nrdax cite NRDAX-T0001 --format bibtex

CLI guide → GitHub ↗