HomeEthereumSecurity Alert 1 | Ethereum Foundation Blog

Security Alert 1 [windows+alethzero] | Ethereum Foundation Blog

-


This affects users of Alethzero GUI client on Windows. Users of eth CLI client or not on the Windows platform are unlikely to be affected but should take action detailed below. Users of Frontier command line interface geth are unaffected.

Issue description: While setting privacy permissions on the keys directory, insufficient error handling can cause the key files to not be written; this may be widespread on the Windows platform. As such, current versions of AlethZero and eth may include identities for which there exists no underlying key. Ether Presale Claim functionality of AlethZero may result in funds automatically being transferred to these lost identities.

Workaround: Users of AlethZero version 0.9.39 and earlier should NOT use the “Claim Presale Wallet” function; users of AlethZero and eth versions 0.9.39 and earlier should not attempt to mine or receive funds into their addresses.

Users of eth and AlethZero on all platforms should consider themselves safe once they have confirmed that they do indeed have the underlying key. To check (with your existing setup) run:

ethkey.exe –list

You may assume that all listed addresses do indeed have a key behind them and are not suffering from this issue.

Remedial action taken by Ethereum: New hotfix released with changes:


Fix: Versions 0.9.40 and onwards, available from circa 2015.08.07 18:30 CEST.



Source link

LEAVE A REPLY

Please enter your comment!
Please enter your name here

LATEST POSTS

Introducing Casper “the Friendly Ghost”

Hi everyone – Vlad here. I’ve been working on the analysis and specification of  “proof-of-stake” blockchain architecture since September 2014. While Vitalik and I...

The Thawing Frontier | Ethereum Foundation Blog

After a smooth launch, please find a few updates of note below. These probably will be of interest only to the more advanced users...

Ethereum Protocol Update 1 | Ethereum Foundation Blog

Here comes the first Frontier patch, and this is a big one! Before you go further, if your keys date back from Go 1.0 rc...

On Public and Private Blockchains

Over the last year the concept of "private blockchains" has become very popular in the broader blockchain technology discussion. Essentially, instead of having a...

Most Popular