Safety officer discloses Cosmos CometBFT 0-day critical vulnerability

robot
Abstract generation in progress

Odaily Star Daily reports that security personnel Doyeon Park posted on the X platform, disclosing a 0-day vulnerability in the Cosmos consensus layer (CometBFT). The vulnerability has a CVSS 7.1 (high) severity level and may cause nodes in the Cosmos ecosystem to stall during the block synchronization phase, but direct asset theft is not feasible. The assets secured by the ecosystem exceed $8 billion. It has followed the coordinated vulnerability disclosure (CVD) process to safeguard ecosystem security; however, due to the vendor’s lack of cooperation and irresponsible decision-making, it decided to continue disclosure based on the vendor’s final decision.

View Original
This page may contain third-party content, which is provided for information purposes only (not representations/warranties) and should not be considered as an endorsement of its views by Gate, nor as financial or professional advice. See Disclaimer for details.
  • Reward
  • Comment
  • Repost
  • Share
Comment
Add a comment
Add a comment
No comments
  • Pin