ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.0 and zebra-chain version 6.0.1, a vulnerability in Zebra's transaction processing logic allows a remote, unauthenticated attacker to cause a Zebra node to panic (crash). This is triggered by sending a specially crafted V5 transaction that passes initial deserialization but fails during transaction ID calculation. This issue has been patched in zebrad version 4.3.0 and zebra-chain version 6.0.1.
An attacker sends a specially crafted V5 transaction that successfully passes the initial deserialization stage but subsequently causes a critical error during the calculation of the transaction ID. Improper handling of this error state results in process panic and immediate node shutdown. The vulnerability stems from a combination of vulnerable deserialization (CWE-502) and errors in the logic for calculating values derived from input data (CWE-94, CWE-1336).
An attacker can remotely and without authentication cause multiple failures of the Zebra node, leading to service unavailability (DoS) at both the node level and dependent systems. This results in the inability of the node to participate in the Zcash network.
Update zebrad to version 4.3.0 or later and zebra-chain to version 6.0.1 or later. Patches are available in the official ZcashFoundation GitHub repository (https://github.com/ZcashFoundation/zebra/releases/tag/v4.3.0).
zebrad in versions prior to 4.3.0 and zebra-chain in versions prior to 6.0.1
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:XZfnd Zebra
APPZfnd< 4.3.0Zfnd Zebra Chain
APPZfnd< 6.0.1
Related vulnerabilities
Crash węzła Zebra (Zcash) przez pole rk z wartością tożsamości w transakcjach Orchard
ZEBRA is a Zcash node written entirely in Rust. Prior to zebrad version 4.3.0 and zebra-consensus version 5.0....
ZEBRA to węzeł Zcash napisany całkowicie w Rust. Przed wersją zebrad 4.4.0, zebra-chain 7.0.0 i zebra-network ...
Błąd walidacji sighash w Zebra — możliwy consensus split z zcashd
Nieprawidłowa weryfikacja sygnatury w węźle ZEBRA (Zcash) — ryzyko rozszczepienia konsensusu