Medium severity5.3NVD Advisory· Published Oct 2, 2026
CVE-2026-104432
CVE-2026-104432
Description
Zebra before 6.3.0 contains an improper exceptional condition check in ChainSync::obtain_tips that discards valid one-hash FindBlocks responses, falsely reporting close-to-tip status. Peers returning only the next block hash cause a zero-length sync sample, making the /ready endpoint return 200 OK while the node remains behind the tip.
Affected products
1- Range: <6.3.0
Patches
Vulnerability mechanics
References
2News mentions
0No linked articles in our index yet.