SlowMist Warning: The Cosmos SDK has a serious security vulnerability, which is caused by a logical error in the unbinding operation of the verification node
2019-05-31 04:01
Cosmos团队表示在Cosmos SDK发现严重安全漏洞,补丁已经在区块高度 482100 时(大约今日早上10时)生效,但是很多节点没有在此高度之前打补丁,需要重放区块才能保证与主网数据一致,据慢雾安全团队分析,此次漏洞的原因是验证节点的解绑操作存在逻辑错误,更多细节将于主网修复完成后公布。慢雾安全参考建议,升级方式:
cd $GOPATH/src/github.com/cosmos/cosmos-sdk
git fetch --all && git checkout v0.34.6 && git pull origin v0.34.6
make tools install
如果有482100之前的备份,用备份恢复,再重新启动节点。
如果没有备份:
# reset state
gaiad unsafe-reset-all
然后再重新启动节点。
最热快讯
资讯热榜
日榜
周榜
Hyperliquid’s 50x leveraged BTC short position turned from loss to profit, with a floating profit of over $600,000
James Wynn wrote a long article about himself: He started playing with contracts in March, earned 8-digit profits from Meme coins, and lost 100 million in a week
BTC rebounded and broke through 102,000 USDT, and the 24-hour decline narrowed to 2.87%
SlowMist: Lazarus hackers are using a new stealing Trojan, OtterCookie, to target cryptographic practitioners
Abraxas Capital shorts mainstream currencies for hedging, with current floating profits exceeding $55 million
TRUMP wallet official website linked to account X for the second time