CVE-2021-41122

Description

Vyper is a Pythonic Smart Contract Language for the EVM. In affected versions external functions did not properly validate the bounds of decimal arguments. The can lead to logic errors. This issue has been resolved in version 0.3.0.

Risk Information

Base Score
4.3
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
EPSS Score
Exploitation Probability
0.203

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2021-41121,CVE-2021-41122,CVE-2024-32648 are fixed in Python-vyper 0.3.0Windows
Vulnerabilities CVE-2021-41121,CVE-2021-41122,CVE-2024-32648 are fixed in Python-vyper for linux 0.3.0Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234