HardhatDeFi
15,000 USDC
View results
Submission Details
Severity: medium
Invalid

Large Array Batch Registration DoS

Summary

Unbounded batch token registration allows potential denial of service through excessive array processing. In AaveDIVAWrapper.sol

Vulnerability Details

Function: batchRegisterCollateralToken()

  • Attack Vector: Submitting extremely large arrays of token addresses

  • No maximum array length validation

  • No gas consumption limits

Impact

  • Prevents owner from efficiently registering tokens

  • Potential transaction failures

  • Increased gas costs

Tools Used

Recommendations

Add maximum array length constraint

require(_collateralTokens.length <= 50, "Batch size too large");

Updates

Lead Judging Commences

bube Lead Judge 4 months ago
Submission Judgement Published
Invalidated
Reason: Known issue

Support

FAQs

Can't find an answer? Chat with us on Discord, Twitter or Linkedin.