PT-2025-43696 · Unknown · Bitcoin Core

Published

2025-10-24

·

Updated

2026-03-22

·

CVE-2025-46598

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions Bitcoin Core versions prior to 30.0 Bitcoin Knots version 20251110
Description The software addresses a resource exhaustion issue when processing an unconfirmed transaction. A fix was released on October 10th, 2025, in Bitcoin Core version 30.0. The issue involves the potential for denial of service due to excessive resource consumption during transaction processing. Approximately 16% of nodes utilize Bitcoin Knots, a fork of Bitcoin Core. Backports of the fix were made to older versions to ensure security updates for users who prefer to remain on those versions.
Recommendations Versions prior to 30.0 should be updated to version 30.0 or later. Bitcoin Knots versions prior to 20251110 should be updated to version 20251110 or later.

Fix

DoS

Weakness Enumeration

Related Identifiers

CVE-2025-46598

Affected Products

Bitcoin Core