Hi list,
We have released a security-advisory: [1] "DoS via malicious p2p
message". A remote peer can cause unbounded resource consumption,
leading to DoS. If you are up to date with recent releases, you need not
be concerned, neither 1.12.1 nor 1.12.2 is vulnerable.
If you run an older version, such as 1.12.1-unstable or 1.12.0, then we
advise you to update at your earliest convenience. So far, we do now
know of this being exploited in the wild - but that may of course change.
Regards,
The go-ethereum maintainers
[1]
https://github.com/ethereum/go-ethereum/security/advisories/GHSA-ppjg-v974-84cm