Swivel v3 contest - rishabh's results

The Capital-Efficient Protocol For Fixed-Rate Lending.

General Information

Platform: Code4rena

Start Date: 12/07/2022

Pot Size: $35,000 USDC

Total HM: 13

Participants: 78

Period: 3 days

Judge: 0xean

Total Solo HM: 6

Id: 135

League: ETH

Swivel

Findings Distribution

Researcher Performance

Rank: 65/78

Findings: 1

Award: $44.25

🌟 Selected for report: 0

🚀 Solo Findings: 0

Awards

44.2549 USDC - $44.25

Labels

bug
duplicate
QA (Quality Assurance)
sponsor disputed
wontfix

External Links

Lines of code

https://github.com/code-423n4/2022-07-ens/blob/main/contracts/dnssec-oracle/Owned.sol#L19

Vulnerability details

Impact

No check for zero address, allows somebody to set owner as zero-address, this will make the DNSSECImpl contract unusable.

Proof of Concept

https://github.com/code-423n4/2022-07-ens/blob/main/contracts/dnssec-oracle/Owned.sol#L19

Tools Used

Manual

require(newOwner!=address(0));

#1 - bghughes

2022-08-03T13:29:21Z

#2 - bghughes

2022-08-03T13:30:03Z

This warden did not submit a QA report so this will act as their QA report

AuditHub

A portfolio for auditors, a security profile for protocols, a hub for web3 security.

Built bymalatrax © 2024

Auditors

Browse

Contests

Browse

Get in touch

ContactTwitter