PT-2024-40018 · Ckb · Ckb

Published

2024-02-03

·

Updated

2024-02-03

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Ckb versions prior to 0.35.2 Ckb versions prior to 0.36.1 Ckb versions prior to 0.37.1 Ckb versions prior to 0.38.2
Description The issue causes faulty nodes to reject transactions that call the load cell data syscall when the input cell is still in the mempool. This also leads to these nodes banning other nodes, resulting in network separation.
Recommendations For versions prior to 0.35.2, update to version 0.35.2 or later. For versions prior to 0.36.1, update to version 0.36.1 or later. For versions prior to 0.37.1, update to version 0.37.1 or later. For versions prior to 0.38.2, update to version 0.38.2 or later.

Related Identifiers

GHSA-29C2-65RJ-H343

Affected Products

Ckb