Delivery-date: Fri, 16 May 2025 07:51:32 -0700 Received: from mail-oa1-f61.google.com ([209.85.160.61]) by mail.fairlystable.org with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 (Exim 4.94.2) (envelope-from ) id 1uFwPL-0003kp-Pw for bitcoindev@gnusha.org; Fri, 16 May 2025 07:51:32 -0700 Received: by mail-oa1-f61.google.com with SMTP id 586e51a60fabf-2d572363154sf346164fac.0 for ; Fri, 16 May 2025 07:51:31 -0700 (PDT) ARC-Seal: i=2; a=rsa-sha256; t=1747407085; cv=pass; d=google.com; s=arc-20240605; b=R0Uxo0UtfBFcCi9+EVOMOI345ON69rpGBOAsES3RqnE0hAThirw5PUUY3Iw8vkeN/N Nr0cvMfgcW2Vur/i9Sr73jAGOvnE83sLQW+krwUk7eTx37TYD684BBVIvxanNCe6LNkn Mnlq4TmQwZ6JDvABwKkpaywmo8nNJkfd8Eb2ED4gsPj/5D4VUulhpqpJ5a3kYY3BJjHH Bu7RbthDOflSWwG+80jIn3Ia+EgS1d/cOSeNuAgghdz19TGuOzUnNBEy2Om/vPks/PJv 2Vu64RtnjdDW1k44qI80WqSxx5RP2Umih8A4KnPccDLGdjvkJhHyt9zKOVc9+xckcoxY hw/g== ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to:mime-version:feedback-id :references:in-reply-to:message-id:subject:cc:from:to:date :dkim-signature; bh=c+kjZYpd3tkW8kW8lHU50YkM6Nuyz9NCz6ZohyaBpaM=; fh=7itXrcKcxxI1BzQaGkvWGnH1iQ6uTJqs/PLl1nmwzoA=; b=HLFqHgn2sl55GNjwV/ENe3ieMMAjkCvQrgx7NJ1SQQ26c12G8FtfAI8xY9F0shki0p DzxQOfevqrcGYh6MWdajkgradbG1dvyiuXQgBNO/wC3bx2NdNKXEcWffH+3xYtDyBc7M j77o9AbMq+wwM9Q2N3A+CJzPdEkJUfRXVu/2ix01ShQ578Pj/aOByzFa+dcye3+m4QA0 ixQxX/c0VT1pKa7ksDTLrwKVt8UKhev5ExCm/+rw1DryUswxRYBSq3VYWniWVnn+T4Lh 2oNL+bxtl7zUszYK8SXGDb+ApLDBI7N9zjQH/oW0oIQP4uBmEuecLP8NIJnyqtDB09s1 v6uQ==; darn=gnusha.org ARC-Authentication-Results: i=2; gmr-mx.google.com; dkim=pass header.i=@protonmail.com header.s=protonmail3 header.b=NmMCAPbs; spf=pass (google.com: domain of darosior@protonmail.com designates 185.70.43.16 as permitted sender) smtp.mailfrom=darosior@protonmail.com; dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=protonmail.com DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=googlegroups.com; s=20230601; t=1747407085; x=1748011885; darn=gnusha.org; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:mime-version :feedback-id:references:in-reply-to:message-id:subject:cc:from:to :date:from:to:cc:subject:date:message-id:reply-to; bh=c+kjZYpd3tkW8kW8lHU50YkM6Nuyz9NCz6ZohyaBpaM=; b=jXaPPQGdAVZGx1n4z5aaZKRBU0rz2LyYU4Cnq4njlSJC8T00MUMr0Eh0cvzTmF1EBX 79ki8KWJXCnoflIdzqM1kp8trR3wpZ/B+JJGAaIiOsHX4M/mAzH8eGMZSJqNiGUIT3nO ow6hbSByqirQocGpv9pWja+DmefuR0aE2rbaEUDsJp/gqjwJgncBOBgswHrIuC1N+q5o KDz2tdS09Ew0KI0mG2TUajGUM3rcLAzz3a482dui7E94JuHm5RaoDZmcJxUWVielQEJU VvzDr9zth6JYguh4M2vqNWXbef0FzqybE3UrsXeBvA8WVCVHJW50CYj9X1LbJrQNx2lv grJQ== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1747407085; x=1748011885; h=list-unsubscribe:list-subscribe:list-archive:list-help:list-post :list-id:mailing-list:precedence:reply-to :x-original-authentication-results:x-original-sender:mime-version :feedback-id:references:in-reply-to:message-id:subject:cc:from:to :date:x-beenthere:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=c+kjZYpd3tkW8kW8lHU50YkM6Nuyz9NCz6ZohyaBpaM=; b=TnDtX897OpoTxurn/ITwYJgbeQi2158zPPgFG2aZvBx4iikeFfI41Smn+MpBmAEuz1 quKlvfiaa0zYDrd2quGP/mCnVow60wclinrR82wbBK1Cue0JBmTDhPuKg4omY2s/1p4q EqonIfhXxSHzAl0k4fOLeYMn/dEF44WAZjXO6g8jZ0z9gVCWBQrEOmd62SnWyVs9gE8l 763em70FrtNheYaUsOLkrnTvrGqTVhZ398AMHCazh2SvbcF4QhTW8w6+Iby6CJaIYX8w JgBHLr/ftTg1wDzOiq/yk1omD2Zocxi5kYz+pIYKI/ekSoWklxD1Xvl+mcqJG/zxuW2f FOZg== X-Forwarded-Encrypted: i=2; AJvYcCUdX4TcVEj9x0WPArluUeR0uUKY/MwJDSGPrLPAZLSJ0gP7EI4bC0sRCXrp17hpVcFexcM+b8MNCre6@gnusha.org X-Gm-Message-State: AOJu0YxTzHH7G2w4VXg/7eB39D20x+YqmTarxkmXpRIqShznXR1bEJvQ TTaVqbGRPAv+c1h5GG+3bDSB+oSi2VSRO2RVu/KFqyUAEvacfR/s+Kdd X-Google-Smtp-Source: AGHT+IG1lw24rCYtgyEyQGxRc3DpoFZuxBN8CSPsSvSF+L48NUnR25VhgnVxBrQGFFxa5UnMAR7KEQ== X-Received: by 2002:a05:6870:2a4a:b0:2d5:ba2d:80e4 with SMTP id 586e51a60fabf-2e3c1e6d32dmr2014997fac.24.1747407085440; Fri, 16 May 2025 07:51:25 -0700 (PDT) X-BeenThere: bitcoindev@googlegroups.com; h=AVT/gBG5YGoUbgu7/KhSbp0hB/cf7TLwsbcT3tfXwgxK6/lb9A== Received: by 2002:a05:6871:20c5:b0:2da:fbc:5e7 with SMTP id 586e51a60fabf-2e39c84e483ls1274417fac.0.-pod-prod-07-us; Fri, 16 May 2025 07:51:19 -0700 (PDT) X-Received: by 2002:a05:6808:6c82:b0:401:bdd7:6670 with SMTP id 5614622812f47-404d877a75amr2328959b6e.23.1747407079322; Fri, 16 May 2025 07:51:19 -0700 (PDT) Received: by 2002:ab3:7843:0:b0:293:32b4:31b9 with SMTP id a1c4a302cd1d6-2b0e5669f65msc7a; Fri, 16 May 2025 07:41:32 -0700 (PDT) X-Received: by 2002:a05:6512:4481:b0:54a:cc76:1676 with SMTP id 2adb3069b0e04-550e7239cc1mr1133627e87.44.1747406489490; Fri, 16 May 2025 07:41:29 -0700 (PDT) ARC-Seal: i=1; a=rsa-sha256; t=1747406489; cv=none; d=google.com; s=arc-20240605; b=C+d4s8IgW1nz8oa1llUgnPTOLj+vAsBSYvtKSzj3byXVkwLK+GcoD7NyY3dfqM+pVm NuqktJwM3nOi4gkOgncFtG42gIdenTFvlbH6AKnIFJ2gMaJG6/Ofrlzq08dNmPC8tdaa O0+TDbUayuEfZX41SWYBNhkrlmo/N/HOYknAvqOx/lEoSWyRwHwxs5LrNBPjYieNO3Bx Sr9sCBg3DbsJ9ULW5080KSgZcI671meoc2/aJVxVrG5RargNjs4A68EXzj9xihsJqJDY le/OFma0aeJe3vztJAygR2046GtgH3dFJZJpk2juqeidAzICeg6PWC0+kOGoWAZezFxm Om3Q== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=content-transfer-encoding:mime-version:feedback-id:references :in-reply-to:message-id:subject:cc:from:to:date:dkim-signature; bh=56PogaVwhQ/3l+/L2QyAKBJSk3uNhIrUPyOzA46i0jE=; fh=m2IwlnuMmP6ceRgqI8U7RCh8Dkd3VeWlWEfxse0Wcvc=; b=ajr219FXxe9Whd7HfUgExbVtR6RT5PGgKLy3NDsK0hZWkoBQ/vinhshkII75uJbTQH P7Lv7GostQ5FrJQqFoB4gCjqCzZP3Cv8YvsZ2c6n1Kn86VANnhfnlW/FFXJnJrpIMjYn ejmK99JUhKB1s3363oE8kYC4W9ok2+vDb5MWogEBlLsjwahULLqEYGgoSqZRe9N+r3La FcyZRqmprdpObxAUOn5rlQjTPaBQKg4jNXZfEqYBJ+Z7XS4ksLVzCwxjmrdyFcrsIIfS sciioWMGJCMdMM+scWL6kNKvg5IYXj0275BG/wwmsFy78O+nwAF1I0dyQjPc8ujxKatn NHGw==; dara=google.com ARC-Authentication-Results: i=1; gmr-mx.google.com; dkim=pass header.i=@protonmail.com header.s=protonmail3 header.b=NmMCAPbs; spf=pass (google.com: domain of darosior@protonmail.com designates 185.70.43.16 as permitted sender) smtp.mailfrom=darosior@protonmail.com; dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=protonmail.com Received: from mail-4316.protonmail.ch (mail-4316.protonmail.ch. [185.70.43.16]) by gmr-mx.google.com with ESMTPS id 2adb3069b0e04-550e6f8e0f0si37968e87.9.2025.05.16.07.41.29 for (version=TLS1_3 cipher=TLS_AES_256_GCM_SHA384 bits=256/256); Fri, 16 May 2025 07:41:29 -0700 (PDT) Received-SPF: pass (google.com: domain of darosior@protonmail.com designates 185.70.43.16 as permitted sender) client-ip=185.70.43.16; Date: Fri, 16 May 2025 14:41:22 +0000 To: Antoine Poinsot From: "'Antoine Poinsot' via Bitcoin Development Mailing List" Cc: Bitcoin Development Mailing List Subject: Re: [bitcoindev] Public disclosure of one vulnerability affecting Bitcoin Core <29.0 Message-ID: In-Reply-To: References: Feedback-ID: 7060259:user:proton X-Pm-Message-ID: 2cacd4921ab8b0989f00c159812c4d4d5d0a5b7e MIME-Version: 1.0 Content-Type: text/plain; charset="UTF-8" X-Original-Sender: darosior@protonmail.com X-Original-Authentication-Results: gmr-mx.google.com; dkim=pass header.i=@protonmail.com header.s=protonmail3 header.b=NmMCAPbs; spf=pass (google.com: domain of darosior@protonmail.com designates 185.70.43.16 as permitted sender) smtp.mailfrom=darosior@protonmail.com; dmarc=pass (p=QUARANTINE sp=QUARANTINE dis=NONE) header.from=protonmail.com X-Original-From: Antoine Poinsot Reply-To: Antoine Poinsot Precedence: list Mailing-list: list bitcoindev@googlegroups.com; contact bitcoindev+owners@googlegroups.com List-ID: X-Google-Group-Id: 786775582512 List-Post: , List-Help: , List-Archive: , List-Unsubscribe: , X-Spam-Score: -1.0 (-) > You can find the advisory on the Bitcoin Core project website at https://bitcoincore.org/en/2025/03/31/disclose-cve-2024-52919. The link was since updated to https://bitcoincore.org/en/2025/04/28/disclose-cve-2024-52919 On Monday, April 28th, 2025 at 3:00 PM, 'Antoine Poinsot' via Bitcoin Development Mailing List wrote: > > > Hi everyone, > > In accordance with our security disclosure policy, i am sharing today a low-severity security advisory affecting Bitcoin Core versions before 29.0 (released 2 weeks ago). > > You can find the advisory on the Bitcoin Core project website at https://bitcoincore.org/en/2025/03/31/disclose-cve-2024-52919. > > For more details about the Bitcoin Core security disclosure policy, see https://bitcoincore.org/en/security-advisories. > > Antoine Poinsot > > -- > You received this message because you are subscribed to the Google Groups "Bitcoin Development Mailing List" group. > To unsubscribe from this group and stop receiving emails from it, send an email to bitcoindev+unsubscribe@googlegroups.com. > To view this discussion visit https://groups.google.com/d/msgid/bitcoindev/EYvwAFPNEfsQ8cVwiK-8v6ovJU43Vy-ylARiDQ_1XBXAgg_ZqWIpB6m51fAIRtI-rfTmMGvGLrOe5Utl5y9uaHySELpya2ojC7yGsXnP90s%3D%40protonmail.com. -- You received this message because you are subscribed to the Google Groups "Bitcoin Development Mailing List" group. To unsubscribe from this group and stop receiving emails from it, send an email to bitcoindev+unsubscribe@googlegroups.com. To view this discussion visit https://groups.google.com/d/msgid/bitcoindev/UCY0pWHlfFg8YzQRMNBHyUIg15CJLI8gM4E-7eHvYmUhkE5mP9Bz71xcHbnyyie8V9ZOnbi6yyKy4rG9h4O8RVx6_tAWD5BV6W71SHHyJiY%3D%40protonmail.com.