CVE-2026-104436 | ZcashFoundation Zebra up to 4.4.9 P2P Message getblocks/getheaders locator hashes resource consumption

SecurityVulns

A vulnerability was found in ZcashFoundation Zebra up to 4.4.9. It has been declared as problematic. This issue affects the function getblocks/getheaders of the component P2P Message Handler. The manipulation of the argument locator hashes results in resource consumption.

This vulnerability is identified as CVE-2026-104436. The attack can be executed remotely. There is not any exploit available.

It is recommended to upgrade the affected component.VulDB Recent EntriesRead More