Juicebox contest - BClabs's results

The decentralized fundraising and treasury protocol.

General Information

Platform: Code4rena

Start Date: 18/10/2022

Pot Size: $50,000 USDC

Total HM: 13

Participants: 67

Period: 5 days

Judge: Picodes

Total Solo HM: 7

Id: 172

League: ETH

Juicebox

Findings Distribution

Researcher Performance

Rank: 48/67

Findings: 1

Award: $37.88

🌟 Selected for report: 0

🚀 Solo Findings: 0

Lines of code

https://github.com/jbx-protocol/juice-nft-rewards/blob/f9893b1497098241dd3a664956d8016ff0d0efd0/contracts/JBTiered721DelegateProjectDeployer.sol#L70-L92

Vulnerability details

Impact

Should check that the _owner is not null address, so that deployer doesn't launch a project where no one could have access to it.

Proof of Concept

launchProjectFor( 0x000..00, _deployTiered721DelegateDataExample, _launchProjectDataExample )

Tools Used

Just me and VS code

add require(_owner!= address(0))

#0 - drgorillamd

2022-10-24T11:10:54Z

Duplicate #186

#1 - c4-judge

2022-12-03T19:14:29Z

Picodes marked the issue as not a duplicate

#2 - c4-judge

2022-12-03T19:14:38Z

Picodes changed the severity to QA (Quality Assurance)

#3 - c4-judge

2022-12-03T19:14:56Z

Picodes marked the issue as grade-b

AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter