Unpatched Eclair Bitcoin Lightning nodes could crash again every time they restart
A newly disclosed unfunded-channel flaw could depart Eclair, a Bitcoin Lightning implementation, crashing repeatedly with out an attacker spending BTC on-chain. The flaw affected reachable nodes operating v0.14.0 and earlier, with saved channel data making a restart inadequate to revive service.
Researcher Erick Cestari printed the persistent-crash finding Sept. 30 and defined it alongside a separate denial-of-service bug in an Oct. 1 developer post. Both had been fastened in v0.14.1, launched in July, earlier than the general public disclosures. ACINQ now recommends the later v0.14.3 safety launch for separate vulnerabilities.
Why restarting could fail
Eclair restricted the variety of pending channels a peer could open, however inconsistent checks of non permanent and ultimate channel identifiers let its counter undercount unfunded channels. A malicious peer could accumulate saved requests with out broadcasting the funding transaction or paying an on-chain charge.
That distinction issues: the BTC usually wanted to fund a channel didn’t need to be dedicated for the weak node to incur reminiscence and database prices. The assault nonetheless required computing assets and community visitors.
In Cestari’s proof of idea, Eclair v0.14.0 ran in regtest, Bitcoin’s native testing setting. He reported that the node exhausted a 4 GB Java digital machine heap after about 47 minutes 43 seconds, with 217,623 rows gathered within the channel database. That is one laboratory benchmark, not a common assault length.
The preliminary crash left these data on disk. During startup, Eclair reloaded the channels and exhausted reminiscence again. Cestari described growing the heap or manually eradicating faux channel data as restoration measures. Repeated restarts left the underlying load in place.
The demonstration issues one weak node’s availability. It doesn’t set up dwell exploitation or the variety of unpatched nodes.
ACINQ merged PR #3324 July 17. The patch strengthened duplicate-channel checks, and v0.14.1 shipped July 29. According to Erick Cestari / Delving Bitcoin, v0.14.0 and earlier are affected, whereas v0.14.1 or later addresses these two denial-of-service findings.
The second bug, disclosed by Matt Morehouse / lnfuzz as LNF-2026-0003, was a channel-opening race that left orphaned channel processes consuming reminiscence or CPU. His advisory says the examined node recovered on disconnect or restart with out loss. That restoration consequence belongs to the race bug, quite than the persistent database flood.
These findings additionally differ from the fund-loss vulnerabilities CryptoSlate covered Sept. 21, which had been patched in v0.14.3. The July minimal repair ought to subsequently not be learn as a whole present safety advice.
ACINQ recommends upgrading to v0.14.3, launched Sept. 14, as a result of malicious nodes could exploit among the points it fastened. Preventing new unfunded-channel floods and recovering an already overloaded database are separate operator issues.
The publish Unpatched Eclair Bitcoin Lightning nodes could crash again every time they restart appeared first on CryptoSlate.

