多个未公开安全漏洞已修复,Polygon披露漏洞细节
Odaily Planet Daily News: Polygon has disclosed multiple previously undisclosed security vulnerabilities that were fixed through the Austin and Kyoto hard forks, which could have affected its proof-of-stake network. The vulnerabilities involve Polygon's Bor and Heimdall clients, including denial-of-service risks, validator resource exhaustion, and defects affecting checkpoint and milestone processing. Polygon stated that the fixes were privately tested before being deployed to the mainnet and publicly disclosed. The most severe issue involved Heimdall, where specially crafted transactions could force validators to perform excessive processing work, thereby disrupting the network. The Austin hard fork also fixed two denial-of-service risks in Bor that could slow down block processing or cause node crashes. Polygon stated that these vulnerabilities were not exploited on the mainnet, and the fixes were proactively completed before the vulnerability details were made public.
