Skip to content

Possible Bug: Under constraint #118

@autoDetector

Description

@autoDetector

Underconstrained selector

Vulnerable File: circuits/aes-gcm/utils.circom
commit: 65f823fc5606fca74440fb0de939ae07a3c39a80

ArrayMux(n)
sel is never constrained to be boolean. As written, out[i] = a[i] + sel·(b[i] − a[I]) allows arbitrary affine mixtures for non-binary sel. Constrain sel with sel·(sel−1) = 0 (or a Bool/IsBoolean component).

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions