PT-2018-11705 · R · R Time Token V3

Publicado

2018-07-05

·

Atualizado

2018-09-02

·

CVE-2018-13223

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions R Time Token v3 (RS)
Description The issue concerns an integer overflow in the sell function of the RTokenMain smart contract implementation. Specifically, when amount * sellPrice equals zero, it can lead to a reduction in a seller's assets.
Recommendations For R Time Token v3 (RS), consider temporarily disabling the sell function in the RTokenMain contract until a patch is available to prevent potential asset reduction due to the integer overflow issue.

Correção

Integer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2018-13223

Produtos afetados

R Time Token V3