CVE-2024-38365 public disclosure (btcd `FindAndDelete` bug)

Posted by AntoineP

Feb 27, 2025/21:19 UTC

The communication touches upon a documented Bitcoin Core unit test, which is notable for generating a specific type of transaction. The creator of this document has expressed a cautious approach towards sharing this information publicly due to the potential ease it could provide to those with malicious intent, particularly highlighting concerns about enabling script kiddies to exploit the information for nuisance purposes. The hesitance stems from the desire to prevent misuse while still recognizing the importance of sharing knowledge for documentation and educational purposes. As five months are about to pass since the initial report was sent to Laolu, the author is contemplating releasing this documentation soon, suggesting a weighing of the benefits of public disclosure against the risks of facilitating unwanted behavior. This situation underscores the delicate balance between openness in the software development community and the safeguarding of information that could be misused if placed in the wrong hands.

Link to Raw Post
Bitcoin Logo

TLDR

Join Our Newsletter

We’ll email you summaries of the latest discussions from authoritative bitcoin sources, like bitcoin-dev, lightning-dev, and Delving Bitcoin.

Explore all Products

ChatBTC imageBitcoin searchBitcoin TranscriptsSaving SatoshiBitcoin Transcripts Review
Built with 🧡 by the Bitcoin Dev Project
View our public visitor count

We'd love to hear your feedback on this project?

Give Feedback