DeFiFoundry
60,000 USDC
View results
Submission Details
Severity: medium
Invalid

Attacker can make a large deposit to reach the depositcap to prevent other users from depositing that type of collateral as margin

Vulnerability Details

All collateral tokens have an associated depositCap

There is a reverting check in depositMargin which forcefully enforces the limit as follows

_requireEnoughDepositCap(collateralType, amountX18, depositCapX18, totalCollateralDepositedX18);

An attacker can take advantage of this by performing a large deposit of margin for that collateral token to reach the limit and block other users from depositing that collateral

Impact

Other users cannot deposit that type of collateral

Zaros will lose potential users because they cannot deposit their preferred collateral

Tools Used

Manual Review

Recommendations

Do not keep a limit, else acknowledge this issue

Updates

Lead Judging Commences

inallhonesty Lead Judge
12 months ago
inallhonesty Lead Judge 11 months ago
Submission Judgement Published
Invalidated
Reason: Incorrect statement

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.