PT-2024-25720 · Unknown+1 · Bitcoin Knots+2

Published

2024-04-30

·

Updated

2026-03-24

·

CVE-2024-34149

CVSS v3.1

6.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:L
Name of the Vulnerable Software and Affected Versions Bitcoin Core versions through 27.0 Bitcoin Knots versions prior to 25.1.knots20231115
Description The tapscript implementation does not include a policy size limit check. This is a separate issue from CVE-2023-50428. Some parties have expressed opposition to the implementation of this limit check, citing disagreements with the technical mechanism or differing objectives.
Recommendations Update to a version after 27.0 for Bitcoin Core. Update to version 25.1.knots20231115 or later for Bitcoin Knots.

Fix

Related Identifiers

ALT-PU-2024-15200
CVE-2024-34149

Affected Products

Alt Linux
Bitcoin Core
Bitcoin Knots