Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-0271 | Vyper is a Pythonic smart contract language for the Ethereum virtual machine. Prior to version 0.3.8, due to missing overflow check for loop variables, by assigning the iterator of a loop to a variable, it is possible to overflow the type of the latter. The issue seems to happen only in loops of type `for i in range(a, a + N)` as in loops of type `for i in range(start, stop)` and `for i in range(stop)`, the compiler is able to raise a `TypeMismatch` when trying to overflow the variable. The problem has been patched in version 0.3.8. |
Github GHSA |
GHSA-6r8q-pfpv-7cgj | Vyper vulnerable to integer overflow in loop |
Fri, 24 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-24T15:57:47.118Z
Reserved: 2023-05-01T16:47:35.313Z
Link: CVE-2023-32058
Updated: 2024-08-02T15:03:28.671Z
Status : Modified
Published: 2023-05-11T21:15:10.397
Modified: 2025-01-24T16:15:34.267
Link: CVE-2023-32058
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA