HomeEthereumSecurity Alert 1 | Ethereum Foundation Blog

Security Alert 1 [windows+alethzero] | Ethereum Foundation Blog

-


This affects users of Alethzero GUI client on Windows. Users of eth CLI client or not on the Windows platform are unlikely to be affected but should take action detailed below. Users of Frontier command line interface geth are unaffected.

Issue description: While setting privacy permissions on the keys directory, insufficient error handling can cause the key files to not be written; this may be widespread on the Windows platform. As such, current versions of AlethZero and eth may include identities for which there exists no underlying key. Ether Presale Claim functionality of AlethZero may result in funds automatically being transferred to these lost identities.

Workaround: Users of AlethZero version 0.9.39 and earlier should NOT use the “Claim Presale Wallet” function; users of AlethZero and eth versions 0.9.39 and earlier should not attempt to mine or receive funds into their addresses.

Users of eth and AlethZero on all platforms should consider themselves safe once they have confirmed that they do indeed have the underlying key. To check (with your existing setup) run:

ethkey.exe –list

You may assume that all listed addresses do indeed have a key behind them and are not suffering from this issue.

Remedial action taken by Ethereum: New hotfix released with changes:


Fix: Versions 0.9.40 and onwards, available from circa 2015.08.07 18:30 CEST.



Source link

LEAVE A REPLY

Please enter your comment!
Please enter your name here

LATEST POSTS

Ethereum Protocol Update 1 | Ethereum Foundation Blog

Here comes the first Frontier patch, and this is a big one! Before you go further, if your keys date back from Go 1.0 rc...

On Public and Private Blockchains

Over the last year the concept of "private blockchains" has become very popular in the broader blockchain technology discussion. Essentially, instead of having a...

Chain Reorganisation Depth Expectations | Ethereum Foundation Blog

This following shows our current and planned expectations concerning maximum likely chain-reorganisation depth. We would not consider transactions within this depth to have an...

An Analysis of the First 100000 Blocks

After a successful launch, Frontier passed it's 100000th block earlier this week. Here are some interesting stats from these first blocks. The first 50 block...

Most Popular