Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Notlesh

Researcher frommoonbeam-foundation
#40892of 53,622
6.5Total CVSS
Vulnerabilities · 1
PT-2022-15036
6.5
2022-01-14
Frontier · Frontier · CVE-2022-21685
**Name of the Vulnerable Software and Affected Versions** Frontier versions prior to commit `8a93fdc6c9f4eb1d2f2a11b7ff1d12d70bf5a664` **Description** A bug in Frontier's MODEXP precompile implementation can cause an integer underflow in certain conditions. This will cause a node crash for debug builds. For release builds (and production WebAssembly binaries), the impact is limited as it can only cause a normal EVM out-of-gas. Users who do not use MODEXP precompile in their runtime are not impacted. **Recommendations** Apply the patch available in pull request #549 to resolve the issue. As a temporary workaround, consider avoiding the use of the `MODEXP` precompile in your runtime until the patch is applied.