{"id":8670,"date":"2025-02-17T23:46:35","date_gmt":"2025-02-17T22:46:35","guid":{"rendered":"https:\/\/wsj-crypto.com\/?p=8670"},"modified":"2025-02-17T23:46:35","modified_gmt":"2025-02-17T22:46:35","slug":"critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2","status":"publish","type":"post","link":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/","title":{"rendered":"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2"},"content":{"rendered":"<p><\/p>\n<div id=\"\">\n<p class=\"chakra-text css-gi02ar\"><b>Security Notification<!-- --><\/b><b><br \/>\n<!-- --><\/b><b><br \/>\n<!-- --><\/b><span style=\"font-weight:400\">Impacted configurations: Geth<!-- --><\/span><span style=\"font-weight:400\"><br \/>\n<!-- --><\/span><span style=\"font-weight:400\"><br \/>\n<!-- --><\/span><span style=\"font-weight:400\">Severity: High<!-- --><\/span><span style=\"font-weight:400\"><br \/>\n<!-- --><\/span><span style=\"font-weight:400\"><br \/>\n<!-- --><\/span><span style=\"font-weight:400\">Overview: \u00a0An issue has been disclosed regarding Geth&#8217;s logging mechanism. This led to a network fork at block #2686351 (Nov-24-2016 14:12:07 UTC). The newly released Geth version 1.5.3 addresses the logging problem and rectifies the fork.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">Specifications: Geth was not effectively reverting empty account deletions when the transaction that triggered the deletions ended with an out-of-gas exception. Furthermore, an additional flaw was discovered in Parity, where the Parity client erroneously failed to revert empty account deletions in a restricted set of situations involving out-of-gas calls to precompiled contracts; the revised behavior of Geth aligns with that of Parity, and empty accounts will no longer pose a concern in about a week once the state clearing procedure concludes.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">The chain that originated from block #2686351 via the previous Geth client, which both Parity and the latest Geth version regard as invalid, appears to have been largely abandoned around block #2686516, indicating that approximately 165 blocks were mined on this now obsolete chain. Transactions circulate throughout the network, so most transactions are likely recorded on both the previous Geth chain and the current chain, even though mining rewards and transaction fees on the former Geth chain are forfeited. <!-- --><\/span><b>No transactions or blocks on the chain that both clients will now validate will be undone.<!-- --><\/b><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">The latest Geth version will update the blockchain from the point of the fork, even if it has synced past that point.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">Resolution: Geth 1.5.3 has been launched. <!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">If you are utilizing Geth: Obtain the most recent client here: <!-- --><\/span><a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-ug8vf0\" href=\"https:\/\/github.com\/ethereum\/go-ethereum\/releases\/tag\/v1.5.3\"><span style=\"font-weight:400\"\/><\/a><a target=\"_blank\" rel=\"noopener\" class=\"chakra-link css-ug8vf0\" href=\"https:\/\/github.com\/ethereum\/go-ethereum\/releases\/tag\/v1.5.3\">https:\/\/github.com\/ethereum\/go-ethereum\/releases\/tag\/v1.5.3<!-- --><\/a><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">If you are using Mist: Restart Mist and the auto-update feature will notify you to upgrade the Geth client that Mist employs to Geth 1.5.3.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">If you decide not to update, please be informed that you will be on an unsupported chain that is invalid.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">We continue to advise that exchanges and other high-value users operate multiple clients and automatically suspend activities or switch to safe mode if they become out of sync by more than approximately 10 blocks.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">Ethereum websites and mobile applications that enable you to store ether and\/or carry out transactions are operated by third-party web-based or mobile Ethereum providers (&#8220;Third Party Providers&#8221;). These Third Party Providers manage their own Ethereum client infrastructure to facilitate their services. Generally, you do not need to take any action if you utilize a Third Party Provider such as MetaMask, Jaxx, and MyEtherWallet. However, they may provide specific instructions for you. It is advisable to consult with your Ethereum Third Party Provider to determine what actions, if any, they recommend for their users.<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><span style=\"font-weight:400\">&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8212;&#8211;<!-- --><\/span><\/p>\n<p><!-- --><\/p>\n<p class=\"chakra-text css-gi02ar\"><b>DISCLAIMER<!-- --><\/b><span style=\"font-weight:400\"><br \/>\n<!-- --><\/span><span style=\"font-weight:400\">This is a rapidly developing and complex technical environment. If you decide to engage, you should understand that there are numerous risks involved, including but not limited to unforeseen bugs and other technical challenges that could lead to the loss of ether and other repercussions. Additionally, if you do not upgrade to Geth 1.5.3, you will be part of an unsupported network. By opting to use the Ethereum platform, you acknowledge the risks associated with this evolving platform.<!-- --><\/span><\/p>\n<\/div>\n<p><br \/>\n<br \/><a href=\"https:\/\/blog.ethereum.org\/en\/2016\/11\/25\/security-alert-11242016-consensus-bug-geth-v1-4-19-v1-5-2\">Source link <\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p>Security Notification Impacted configurations: Geth Severity: High Overview: \u00a0An issue has been disclosed regarding Geth&#8217;s logging mechanism. This led to a network fork at block #2686351 (Nov-24-2016 14:12:07 UTC). The newly released Geth version 1.5.3 addresses the logging problem and rectifies the fork. Specifications: Geth was not effectively reverting empty account deletions when the transaction<\/p>\n","protected":false},"author":3,"featured_media":8282,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[23],"tags":[1331],"class_list":["post-8670","post","type-post","status-publish","format-standard","has-post-thumbnail","category-ethereum","tag-return-a-list-of-comma-separated-tags-from-this-title-security-alert-11-24-2016-consensus-bug-in-geth-v1-4-19-and-v1-5-2"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v26.3 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2 - WSJ-Crypto<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/\" \/>\n<meta property=\"og:locale\" content=\"it_IT\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2 - WSJ-Crypto\" \/>\n<meta property=\"og:description\" content=\"Security Notification Impacted configurations: Geth Severity: High Overview: \u00a0An issue has been disclosed regarding Geth&#8217;s logging mechanism. This led to a network fork at block #2686351 (Nov-24-2016 14:12:07 UTC). The newly released Geth version 1.5.3 addresses the logging problem and rectifies the fork. Specifications: Geth was not effectively reverting empty account deletions when the transaction\" \/>\n<meta property=\"og:url\" content=\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/\" \/>\n<meta property=\"og:site_name\" content=\"WSJ-Crypto\" \/>\n<meta property=\"article:published_time\" content=\"2025-02-17T22:46:35+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg\" \/>\n\t<meta property=\"og:image:width\" content=\"2100\" \/>\n\t<meta property=\"og:image:height\" content=\"900\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"wsjcrypto\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Scritto da\" \/>\n\t<meta name=\"twitter:data1\" content=\"wsjcrypto\" \/>\n\t<meta name=\"twitter:label2\" content=\"Tempo di lettura stimato\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minuti\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/\",\"url\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/\",\"name\":\"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2 - WSJ-Crypto\",\"isPartOf\":{\"@id\":\"https:\/\/wsj-crypto.com\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg\",\"datePublished\":\"2025-02-17T22:46:35+00:00\",\"author\":{\"@id\":\"https:\/\/wsj-crypto.com\/#\/schema\/person\/88a93723b30416db1a352d5a0096c4a7\"},\"breadcrumb\":{\"@id\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#breadcrumb\"},\"inLanguage\":\"it-IT\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#primaryimage\",\"url\":\"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg\",\"contentUrl\":\"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg\",\"width\":2100,\"height\":900},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/wsj-crypto.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/wsj-crypto.com\/#website\",\"url\":\"https:\/\/wsj-crypto.com\/\",\"name\":\"WSJ-Crypto\",\"description\":\"Just Another Crypto News Website\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/wsj-crypto.com\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"it-IT\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/wsj-crypto.com\/#\/schema\/person\/88a93723b30416db1a352d5a0096c4a7\",\"name\":\"wsjcrypto\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"it-IT\",\"@id\":\"https:\/\/wsj-crypto.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/86fe8af82ea089646d6639ca2f87e0243d8688d957bd8e3ec22ec3c457cc16d4?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/86fe8af82ea089646d6639ca2f87e0243d8688d957bd8e3ec22ec3c457cc16d4?s=96&d=mm&r=g\",\"caption\":\"wsjcrypto\"},\"url\":\"https:\/\/wsj-crypto.com\/index.php\/author\/wsjcrypto\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2 - WSJ-Crypto","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/","og_locale":"it_IT","og_type":"article","og_title":"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2 - WSJ-Crypto","og_description":"Security Notification Impacted configurations: Geth Severity: High Overview: \u00a0An issue has been disclosed regarding Geth&#8217;s logging mechanism. This led to a network fork at block #2686351 (Nov-24-2016 14:12:07 UTC). The newly released Geth version 1.5.3 addresses the logging problem and rectifies the fork. Specifications: Geth was not effectively reverting empty account deletions when the transaction","og_url":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/","og_site_name":"WSJ-Crypto","article_published_time":"2025-02-17T22:46:35+00:00","og_image":[{"width":2100,"height":900,"url":"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg","type":"image\/jpeg"}],"author":"wsjcrypto","twitter_card":"summary_large_image","twitter_misc":{"Scritto da":"wsjcrypto","Tempo di lettura stimato":"3 minuti"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/","url":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/","name":"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2 - WSJ-Crypto","isPartOf":{"@id":"https:\/\/wsj-crypto.com\/#website"},"primaryImageOfPage":{"@id":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#primaryimage"},"image":{"@id":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#primaryimage"},"thumbnailUrl":"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg","datePublished":"2025-02-17T22:46:35+00:00","author":{"@id":"https:\/\/wsj-crypto.com\/#\/schema\/person\/88a93723b30416db1a352d5a0096c4a7"},"breadcrumb":{"@id":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#breadcrumb"},"inLanguage":"it-IT","potentialAction":[{"@type":"ReadAction","target":["https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/"]}]},{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#primaryimage","url":"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg","contentUrl":"https:\/\/wsj-crypto.com\/wp-content\/uploads\/2025\/02\/eth-org.jpeg","width":2100,"height":900},{"@type":"BreadcrumbList","@id":"https:\/\/wsj-crypto.com\/index.php\/2025\/02\/17\/critical-security-advisory-consensus-flaw-discovered-in-geth-versions-1-4-19-and-1-5-2\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/wsj-crypto.com\/"},{"@type":"ListItem","position":2,"name":"Critical Security Advisory: Consensus Flaw Discovered in Geth Versions 1.4.19 and 1.5.2"}]},{"@type":"WebSite","@id":"https:\/\/wsj-crypto.com\/#website","url":"https:\/\/wsj-crypto.com\/","name":"WSJ-Crypto","description":"Just Another Crypto News Website","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/wsj-crypto.com\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"it-IT"},{"@type":"Person","@id":"https:\/\/wsj-crypto.com\/#\/schema\/person\/88a93723b30416db1a352d5a0096c4a7","name":"wsjcrypto","image":{"@type":"ImageObject","inLanguage":"it-IT","@id":"https:\/\/wsj-crypto.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/86fe8af82ea089646d6639ca2f87e0243d8688d957bd8e3ec22ec3c457cc16d4?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/86fe8af82ea089646d6639ca2f87e0243d8688d957bd8e3ec22ec3c457cc16d4?s=96&d=mm&r=g","caption":"wsjcrypto"},"url":"https:\/\/wsj-crypto.com\/index.php\/author\/wsjcrypto\/"}]}},"amp_enabled":true,"_links":{"self":[{"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/posts\/8670","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/comments?post=8670"}],"version-history":[{"count":2,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/posts\/8670\/revisions"}],"predecessor-version":[{"id":8672,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/posts\/8670\/revisions\/8672"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/media\/8282"}],"wp:attachment":[{"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/media?parent=8670"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/categories?post=8670"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/wsj-crypto.com\/index.php\/wp-json\/wp\/v2\/tags?post=8670"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}