According to Zcash Foundation, Zebra 4.4.0 was released recently to fix multiple consensus-level security vulnerabilities. The update addresses denial-of-service flaws that could halt block discovery, block signature operation (sigops) counting errors causing consensus disagreements, transparent transaction signature hash handling anomalies, and memory allocation amplification attack risks. The foundation strongly recommends all node operators upgrade immediately.
Some vulnerabilities could cause Zebra nodes to accept blocks rejected by zcashd, potentially triggering chain forks. Without timely updates, nodes risk block discovery interruption, consensus divergence, and resource exhaustion amplification. The foundation noted no alternative mitigation measures currently exist.
Disclaimer: The information on this page may come from third parties and does not represent the views or opinions of Gate. The content displayed on this page is for reference only and does not constitute any financial, investment, or legal advice. Gate does not guarantee the accuracy or completeness of the information and shall not be liable for any losses arising from the use of this information. Virtual asset investments carry high risks and are subject to significant price volatility. You may lose all of your invested principal. Please fully understand the relevant risks and make prudent decisions based on your own financial situation and risk tolerance. For details, please refer to
Disclaimer.
Related Articles
A $292 Million Crypto Hack This Year Exposed Critical DeFi Security Vulnerabilities
According to CoinDesk, a $292 million crypto hack this year exposed significant security vulnerabilities in DeFi protocols. The incident has prompted industry insiders to reassess risk management and market structure as traditional finance players move onchain.
The breach has triggered broader
GateNews2h ago
eCash Proposal Draws Developer Warnings Over Risk and Distribution
Developers and industry figures have raised concerns about an eCash proposal linked to Paul Sztorc, citing user risk, uneven distribution, and philosophical tension as key issues.
The proposal has been characterized as introducing hazardous elements that warrant caution within the cryptocurrency co
CryptoFrontier3h ago
Wasabi Protocol Users Can Now Safely Withdraw Remaining Funds
According to Wasabi Protocol's official statement on X, users can now safely interact with the protocol's smart contracts and withdraw remaining funds. The team is working to investigate the incident but has not disclosed additional details at this time, stating that further updates will be shared w
GateNews3h ago
Purrlend Loses $1.52M on HyperEVM and MegaETH After 2/3 Multisig Compromise
According to ChainCatcher, Purrlend suffered a security breach on HyperEVM and MegaETH on May 3, losing approximately $1.52 million. Attackers compromised the team's 2/3 multisig wallet and granted themselves the BRIDGE_ROLE permission, using it to mint unbacked pUSDm and pUSDC tokens that were
GateNews5h ago
Hundreds of Dormant Ethereum Wallets Drained by Single Address
According to ChainCatcher, citing analyst Wazz, hundreds of dormant Ethereum wallets, many inactive for over seven years, were drained by the same address on ETH mainnet. Aragon team member @TheTakenUser confirmed their wallet was affected. The root cause remains unclear, though community analysis s
GateNews8h ago