Tally contest - pauliax's results

The community owned and operated Web3 wallet.

General Information

Platform: Code4rena

Start Date: 20/10/2021

Pot Size: $30,000 ETH

Total HM: 5

Participants: 15

Period: 3 days

Judge: 0xean

Total Solo HM: 3

Id: 44

League: ETH

Tally

Findings Distribution

Researcher Performance

Rank: 5/15

Findings: 3

Award: $1,047.46

🌟 Selected for report: 0

🚀 Solo Findings: 0

Findings Information

🌟 Selected for report: elprofesor

Also found by: JMukesh, Koustre, WatchPug, cmichel, pauliax

Labels

bug
duplicate
2 (Med Risk)

Awards

240.9613 USDC - $240.96

External Links

Handle

pauliax

Vulnerability details

Impact

payable(msg.sender).transfer(toTransfer); feeRecipient.transfer(address(this).balance); It is no longer recommended to use .transfer when sending ether as recipients with custom fallback functions (smart contracts) will not be able to handle that. You can read more here: https://consensys.net/diligence/blog/2019/09/stop-using-soliditys-transfer-now/

Solution (make sure to keep nonReentrant): https://github.com/OpenZeppelin/openzeppelin-contracts/blob/master/contracts/utils/Address.sol#L53-L59

#0 - Shadowfiend

2021-11-04T15:53:45Z

Duplicate of #20.

AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter