PT-2025-43696 · Unknown · Bitcoin Core
Published
2025-10-24
·
Updated
2026-03-22
·
CVE-2025-46598
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
Bitcoin Core versions prior to 30.0
Bitcoin Knots version 20251110
Description
The software addresses a resource exhaustion issue when processing an unconfirmed transaction. A fix was released on October 10th, 2025, in Bitcoin Core version 30.0. The issue involves the potential for denial of service due to excessive resource consumption during transaction processing. Approximately 16% of nodes utilize Bitcoin Knots, a fork of Bitcoin Core. Backports of the fix were made to older versions to ensure security updates for users who prefer to remain on those versions.
Recommendations
Versions prior to 30.0 should be updated to version 30.0 or later.
Bitcoin Knots versions prior to 20251110 should be updated to version 20251110 or later.
Fix
DoS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Bitcoin Core