mediumLogic errorEVM-Solidity
Teller Finance: `_repayLoan` now allows for overpaying of loan and could cause DoS within `LenderCommitmentGroup_Smart`
- Payout
- $0
- Protocol
- Teller Finance
- Disclosed
- Apr 29, 2024
- Source
- sherlock
In Teller Finance's loan repayment path, when a borrower sends more than the amount owed on a bid, `_repayLoan` clamps its local `paymentAmount` variable to `_owedAmount` and marks the bid PAID, but it forwards the original, over-funded `_payment` memory struc …
Similar reports
- No close matches yet.
References
This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.