block-size-limit

1 article
sort: new top best
clear filter
0 8/10
vulnerability

Story Network discovered a critical denial-of-service vulnerability where arbitrarily large EVM transactions (>4MB) could be crafted to crash validators by exploiting loose unmarshalling of ExecutionPayload fields, inherited from Omni's Octane codebase. The attack leverages JSON marshalling to double block size, allowing an attacker to exceed the 4MB panic threshold and halt the entire network.

Story Network Cantina Octane Omni Geth CometBFT
story.foundation · WhiteHatMage · 17 hours ago · details