Vulnerability DatabaseGHSA-mjfq-3qr2-6g84

GHSA-mjfq-3qr2-6g84
vulnerability analysis and mitigation

Overview

The vulnerability (GHSA-mjfq-3qr2-6g84) affects Cosmos EVM version 0.1.0, discovered and disclosed in May 2025. This critical security flaw allows users to partially execute precompiles and error at specific points in the precompile code without reverting the partially written state. The vulnerability has a CVSS v4 base score of 8.3 (High severity) and affects any evmOS or Cosmos EVM chain using precompiles (GitHub Advisory, Wiz Advisory).

Technical details

The vulnerability occurs when setting lower EVM call gas, which enables partial execution of precompiles without proper state reversion. The issue has attack vectors including Network accessibility, Low attack complexity, and No privileges required. The vulnerability specifically impacts the integrity of the system while maintaining normal confidentiality levels (GitHub Advisory).

Impact

If exploited, this vulnerability could cause funds to be transferred to a user without resetting the claimable rewards to 0 when executed on the distribution precompile during fund claiming. Additionally, it could lead to indeterministic execution by failing at various points in the code, potentially causing validator halts (GitHub Advisory).

Mitigation and workarounds

The vulnerability has been patched by implementing an atomic function that reverts any partially committed state on error. The fix involves wrapping each precompile execution in a RunAtomic function and modifying several core files including x/evm/statedb.go, x/evm/statedb/journal.go, and precompiles/common/precompile.go. There are no workarounds available for chains using precompiles, necessitating a coordinated upgrade to implement the patch (GitHub Advisory).

Additional resources


SourceThis report was generated using AI

Free Vulnerability Assessment

Benchmark your Cloud Security Posture

Evaluate your cloud security practices across 9 security domains to benchmark your risk level and identify gaps in your defenses.

Request assessment

Get a personalized demo

Ready to see Wiz in action?

"Best User Experience I have ever seen, provides full visibility to cloud workloads."
David EstlickCISO
"Wiz provides a single pane of glass to see what is going on in our cloud environments."
Adam FletcherChief Security Officer
"We know that if Wiz identifies something as critical, it actually is."
Greg PoniatowskiHead of Threat and Vulnerability Management