XRP “from the air”: a dangerous vulnerability has been fixed in XRPL.
XRP Ledger developers have fixed two bugs that could have allowed new XRP to be created and stop transaction confirmations on the network.
The first vulnerability allowed recipients of payments to receive more $XRP than was debited from the sender’s account. According to the team, it could have existed since 2015. No signs of its exploitation have been found.
The second vulnerability could have caused disagreements between servers and stopped the network. The main network was not affected: the problematic feature has not yet been activated.
Both fixes were included in xrpld 3.4.1 on September 25. A protocol update for the second bug was activated on October 9.
#Ripple #vulnerability