It fixes issues reported over the past three weeks, during a sharp rise in AI-generated reports across open source Bitcoin. No vulnerability is known to be actively exploited. Binaries are out now. Source follows in 14 days.
https://blog.blockstream.com/core-lightning-26-06-7/
Highly motivated actor with a powerful AI might disassemble the binaries and figure out the vulnerability to the point of being able to exploit non-upgraded nodes, right?
Binaries have been released for Fedora and Ubuntu. What about other operating systems? Those users have no other choice but to shut down their nodes for two weeks (run with
--offline)."Binary-now, source-code-later" changes the trust model subtly but significantly. With the source code, one could verify. Now one has to blindly trust that the binary is not malicious. Yes, if all is ok and the developers are honest, the binaries will not be malicious. But the developers might as well ship a binary that drains the nodes and after two weeks say "oops, sorry" or whatever.
There is no way that I would run a binary-only blob (even if the source is promised later).
I am going to remain --offline. I am not upgrading to binaries. Waiting for source to drop. Makes me question how much liquidity willing to put into the LN. Seems like the risk profile of running a LN has just gone up significantly. Unfortunate.
Would be very interested to hear how an attack on CLN would unfold. Has anyone lost funds as of yet?
Thanks
Thanks for sharing this here. This is the Bitcoin people don't see: developers doing the boring work, operators updating nodes and everyone verifying what they run. That's how permissionless networks survive ⚡