Skip to content

fix: consume certificate version wrapper#70

Draft
leopoldjoy wants to merge 1 commit into
mainfrom
audit/consume-version-wrapper
Draft

fix: consume certificate version wrapper#70
leopoldjoy wants to merge 1 commit into
mainfrom
audit/consume-version-wrapper

Conversation

@leopoldjoy

Copy link
Copy Markdown
Contributor

Summary

  • require the version INTEGER to consume the explicit [0] wrapper exactly
  • add a regression proving trailing wrapper bytes are rejected before signature verification

Audit finding

Addresses external finding #15.

Tests

  • forge fmt --check
  • forge test --match-path test/CertManager.t.sol (39 passed, 1 skipped)
  • forge build --sizes src
  • Production CertManager runtime: 24,557 bytes, 19-byte margin

Co-authored-by: OpenCode <opencode-noreply@coinbase.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant