Skip to content

Ravencoin v4.7.0: Patch the asset transfer qty overflow bug

Choose a tag to compare

@hans-schmidt hans-schmidt released this 14 Jun 01:50
· 12 commits to master since this release
408e372

ravencoin core v4.7.0:

  1. Fixes the asset transfer qty overflow bug
    -this lets a malicious actor who has at least qty 1 of an asset create 2^64-qty copies of the asset for himself
    -the binaries below named raven-4.7.0-0b91b62a2 released June 13th have a patch for this bug
    -however, activation requires 70% adoption by miners, which has not happened
    -the source code has been released in this repository as PR #1287

  2. RPC calls sendmany and sendtoaddress now work properly

This core version never activated on mainnet because BIP9 voting did not complete before v4.8.0 became necessary

-Note that the commit hash on the binaries and the source code hash do not match. This is because the source code of the patch was initially withheld to give projects time to patch, and not help the hackers.

For your security, you should always check the binaries against the published file hashes. The list of hashes is signed using my GPG key, which you can verify using my GPG Fingerprint posted at https://github.com/hans-schmidt