All reports
highBridge exploitEVM-Solidity

Maia DAO Ecosystem: Accessing the incorrect offset to get the nonce when a flag is 0x06 in `RootBridgeAgent::anyExecute()` will lead to marked as executed incorrect nonces and could potentially cause a DoS

Payout
$0
Protocol
Maia DAO Ecosystem
Disclosed
Sep 18, 2023
Source
code4rena

A slice offset error in Maia DAO's RootBridgeAgent contract caused incoming cross-chain messages with flag 0x06 (`callOutSignedMultiple`) to decode nonces from the wrong byte positions. Because bytes were read from offset 21 rather than 22-26, the contract mar …

Similar reports

  • No close matches yet.

References

This report is already public and closed. Coin Buggie never publishes active or unpatched vulnerability data.