What is CVE-2026-52739?
CVE-2026-52739 affects ZEBRA, a Zcash node written in Rust, in versions prior to 4.5.0. A malicious block producer can terminate the `zebrad` process by placing the same shielded transaction in both a non-finalized parent block and its child. Affected users should immediately update to version 4.5.0 or later.
Azərbaycanca: CVE-2026-52739, ZEBRA (Rust-da yazılmış Zcash nodu) proqramının 4.5.0 versiyasından əvvəlki versiyalarına təsir edir. Zərərli blok istehsalçısı, eyni qorunan əməliyyatı həm qeyri-finalizasiya olunmuş ana bloka, həm də onun törəmə blokuna yerləşdirməklə `zebrad` prosesini dayandıra bilər. Təsirə məruz qalan istifadəçilər dərhal 4.5.0 və ya daha yuxarı versiyaya yeniləməlidir.
FAQ2
Which versions of ZEBRA are affected by CVE-2026-52739?
This vulnerability affects ZEBRA versions prior to 4.5.0.
What can a malicious block producer achieve by exploiting CVE-2026-52739?
By placing the same shielded transaction in both a non-finalized parent block and its child, they can terminate the `zebrad` process.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.