GHSA-2fcv-qww3-9v6h: Babylon's malformed vote extensions are not rejected
(updated )
Adversarial validators can send large vote extensions by using non-existing protobuf tags. This will result in the rejection of the subsequent block proposal. Eventually, all block proposals will be rejected by all validators.
References
Code Behaviors & Features
Detect and mitigate GHSA-2fcv-qww3-9v6h with GitLab Dependency Scanning
Secure your software supply chain by verifying that all open source dependencies used in your projects contain no disclosed vulnerabilities. Learn more about Dependency Scanning →