prysmaticlabs/prysm

Inquiry On Feedback to the SSZ Related Issue Reported Recently

ewagmig opened this issue ยท 4 comments

๐Ÿ’Ž Issue

Background

There was an open issue reported recently in the [ghost-in-the-block-ethereum-consensus-vulnerability](https://www.asymmetric.re/blog/ghost-in-the-block-ethereum-consensus-vulnerability), which was also included in the last Ethereum weekly report.

Screenshot 2024-09-23 at 19 12 03

Description

This issue has the potential to undermine the consensus if the proof of concept (PoC) is verified. However, no hotfix has been released for this issue. We would like to inquire about the current status: Is it still under investigation to determine the root cause, or has it been proven a false positive?

Recent releases of prysm and fastssz no longer have the bug described in the "ghost in the block" blog post, it has already been fixed. You also highlighted a bullet point with release notes referencing a bug fix in karalabe/ssz, but that isn't related to the consensus issue, and does not apply to prysm or fastssz.

Thanks @kasey , the recent release you mean is v5.0.1 at August 21st, or a new one pending release?

Thanks @kasey , the recent release you mean is v5.0.1 at August 21st, or a new one pending release?

Yes it is included in v5.0.1.

@kasey Cool, thanks for your clarification. I will close this issue then.