All reports
mediumBridge exploitEVM-Solidity

ZetaChain: Inbound transactions submitted to the `InTxTracker` that contain multiple `ZetaSent` and `Deposited` events are not processed correctly by the observers resulting in a loss of funds

Payout
$0
Protocol
ZetaChain
Disclosed
Sep 6, 2024
Source
code4rena

ZetaChain's observer software stops iterating over a transaction receipt's logs as soon as the first ZetaSent (or ERC-20 Deposited) event yields a valid vote message, because of a break statement in the CheckReceiptForCoinTypeZeta and CheckReceiptForCoinTypeER …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.