Bitcoin Q&A: CVE-2018-17144 vulnerability

What is the CVE-2018-17144 vulnerability in the Bitcoin Core client? How did such a critical bug happen? What should we do about it?

Please see the following about upgrading your node to the latest release; alternatively you can find various backported releases with the vulnerability fixed: https://lists.linuxfoundation.org/pipermail/bitcoin-core-dev/2018-October/000068.html

This question is from the September monthly Patreon session, which took place on September 29th 2018. If you want early-access to talks and a chance to participate in the monthly live Q&As with Andreas, become a patron: https://www.patreon.com/aantonop

RELATED:
Advanced Bitcoin Scripting, Part 1: Transactions and Multisig - https://youtu.be/8FeAXjkmDcQ
Advanced Bitcoin Scripting, Part 2: SegWit, Consensus, and Trustware - https://youtu.be/pQbeBduVQ4I
Migrating to post-quantum cryptography
What is a private key? - https://youtu.be/xxfUpIV9wRI
Public keys vs. addresses - https://youtu.be/8es3qQWkEiU
Protocol development security - https://youtu.be/4fsL5XWsTJ4
Software distribution security - https://youtu.be/_V0vqy046YM
Lightning's security model - https://youtu.be/_GNsT_ufkec
Misconceptions about the Lightning Network - https://youtu.be/c4TjfaLgzj4
Eltoo, and the early days of Lightning - https://youtu.be/o6eFZ5aI9N0
Lightning Network scaling - https://youtu.be/4KiWkwo48k0
Lightning Network interoperability - https://youtu.be/1HYMWcJHGXc
Lightning Network game theory - https://youtu.be/7if0DuTtozY
Atomic swaps - https://youtu.be/fNFBA2UmUmg
Full node and home network security - https://youtu.be/uo58zmyXqFY
Running nodes and payment channels - https://youtu.be/ndcfBfE_yoY
What is Segregated Witness (SegWit)? - https://youtu.be/dtOjjB4mD8k
SegWit and fork research - https://youtu.be/OorLoi01KEE

Andreas M. Antonopoulos is a technologist and serial entrepreneur who has become one of the most well-known and respected figures in bitcoin.

Follow on Twitter: @aantonop https://twitter.com/aantonop
Website: https://antonopoulos.com/

He is the author of two books: “Mastering Bitcoin,” published by O’Reilly Media and considered the best technical guide to bitcoin; “The Internet of Money,” a book about why bitcoin matters.

THE INTERNET OF MONEY, v1: https://www.amazon.co.uk/Internet-Money-collection-Andreas-Antonopoulos/dp/1537000454/ref=asap_bc?ie=UTF8

[NEW] THE INTERNET OF MONEY, v2: https://www.amazon.com/Internet-Money-Andreas-M-Antonopoulos/dp/194791006X/ref=asap_bc?ie=UTF8

MASTERING BITCOIN: https://www.amazon.co.uk/Mastering-Bitcoin-Unlocking-Digital-Cryptocurrencies/dp/1449374042

[NEW] MASTERING BITCOIN, 2nd Edition: https://www.amazon.com/Mastering-Bitcoin-Programming-Open-Blockchain/dp/1491954388

Translations of MASTERING BITCOIN: https://bitcoinbook.info/translations-of-mastering-bitcoin/

Subscribe to the channel to learn more about Bitcoin & open blockchains!

Music: "Unbounded" by Orfan (https://www.facebook.com/Orfan/)
Outro Graphics: Phneep (http://www.phneep.com/)
Outro Art: Rock Barcellos (http://www.rockincomics.com.br/)

Share your thoughts, add a comment!

You must be logged in in order to place a comment.

Article comments

Loading...
No comments yet, be the first to comment this article