Headline:
CVE-2025-46598 - CPU DoS from unconfirmed transaction processing
Summary:
This lead was identified from Bitcoin Core Blog. It has been saved for accountability coverage and should be reviewed against the original source before expansion.
What the record says:
The source headline is: CVE-2025-46598 - CPU DoS from unconfirmed transaction processing. The source summary says: Disclosure of the details of a resource exhaustion issue when processing an unconfirmed transaction. A fix was released on October 10th 2025 in Bitcoin Core v30.0. This issue is considered Low severity. Details An attacker could send specially-crafted unconfirmed transactions that would take a victim node a few seconds each to validate. The non-standard transactions would be rejected but not lead to a disconnection and the process could be repeated. This could be exploited to delay block propagation. The issue was mitigated in multiple steps by reducing the validation time in different Script contexts. Attribution Antoine Poinsot reported this issue to the Bitcoin Core security mailing list. Pieter Wuille, Anthony Towns and Antoine Poinsot implemented mitigations to reduce the worst case validation time of unconfirmed transactions. Timeline 2025-04-25 - Antoine Poinsot reports the issue
Why it matters:
This may be relevant to public accountability, consumer protection, government oversight, fraud monitoring, or financial transparency depending on the source record.
What is not yet proven:
This draft should not be treated as proof beyond what the linked source directly supports. Avoid adding accusations, private information, or copied text from the original source.
Source:
https://bitcoincore.org/en/2025/10/24/disclose-cve-2025-46598/
AI writer note: OPENAI_API_KEY is empty, so this was generated with the built-in safe fallback writer.
https://bitcoincore.org/en/2025/10/24/disclose-cve-2025-46598/