Zcash Releases Critical Fixes After Node Crash and Network Risks - U.Today

robot
Abstract generation in progress

In a recent tweet, Zcash Open Development Lab (ZODL) shares a security disclosure regarding vulnerabilities in zcashd and Zebra, which were discovered and patched, including a bug that could crash nodes handling certain Orchard transactions.

In this light, ZODL stated that it has released zcashd v6.12.1, and the Zcash Foundation has released Zebra v4.3.1, addressing four vulnerabilities, including an Orchard action-encoding bug that could crash nodes and a related consensus-split issue between the two clients.

Several vulnerabilities in zcashd and Zebra were discovered and patched, including a bug that could crash nodes handling certain Orchard transactions, a consensus enforcement gap between the two implementations that could have triggered a chain fork, a bug that could disable enforcement of zcashd’s turnstile accounting and undefined behavior due to unchecked integer arithmetic in pool balance calculations.

Mining pools running both implementations have already deployed patches, with no evidence that any of the bugs were exploited.

In addition, the vulnerabilities were not exploited to affect the consensus chain. Zcash maintains that all user funds remain safe, and user privacy was not at risk. None of these vulnerabilities could by themselves have been used to inflate the ZEC supply.

Both zcashd and Zebra required patches and were updated in coordination before public disclosure.

Mining pools representing a supermajority of the network’s hash power and the primary operator running Zebra in mining production deployed patches before the disclosure.

Zcash news

Zcash Shielded pool recently hit an all-time high, 31% of all ZEC is now in the encrypted pool. A year ago, it was 11%, but now 59% of transactions are shielded.

Zcash is actively testing NIST-standardized lattice-based cryptography (ML-KEM, ML-DSA) in a bid for post-quantum readiness. This comes after Google’s March 31 paper showed quantum threats are 20x closer than expected.

Zcash Network’s hash rate also set a new all-time high at 16.54 GS/s, indicating miners’ commitment more than ever.

ZEC-3.8%
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin