forked from 0xPolygonZero/plonky2
-
Notifications
You must be signed in to change notification settings - Fork 3
Issues
is:issue state:open
is:issue state:open
Issue creation is restricted in this repository
Search results
[V12 near-miss] serialized-data cluster — never accept verifier/common/circuit data from untrusted input
v12-auditV12 7xxxx-series audit remediationV12 7xxxx-series audit remediationStatus: Open.#71 In Quantus-Network/qp-plonky2;[V12 near-miss] #78971 — never register a secret-derived target as a public input
v12-auditV12 7xxxx-series audit remediationV12 7xxxx-series audit remediationStatus: Open.#70 In Quantus-Network/qp-plonky2;[V12 near-miss] #79713 — only feed constrained BoolTargets into select/branch
v12-auditV12 7xxxx-series audit remediationV12 7xxxx-series audit remediationStatus: Open.#69 In Quantus-Network/qp-plonky2;[V12 near-miss] #79706/#79719 — range-check & decomposition soundness depends on fixed widths <=48 bits
v12-auditV12 7xxxx-series audit remediationV12 7xxxx-series audit remediationStatus: Open.#68 In Quantus-Network/qp-plonky2;[V12 near-miss] #79709 — keep Poseidon2 hashing on hash_n_to_hash_no_pad_p2 (generic AlgebraicHasher path diverges)
v12-auditV12 7xxxx-series audit remediationV12 7xxxx-series audit remediationStatus: Open.#67 In Quantus-Network/qp-plonky2;[V12 near-miss] #79707 — keep the custom 4-ary Merkle (generic Poseidon2 Merkle gadget ignores direction bits)
v12-auditV12 7xxxx-series audit remediationV12 7xxxx-series audit remediationStatus: Open.#66 In Quantus-Network/qp-plonky2;