Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

go.mod: bump blst to v0.3.11 #348

Conversation

minh-bq
Copy link
Contributor

@minh-bq minh-bq commented Aug 28, 2023

blst v0.3.11 fixes this vulnerability. This vulnerability does not affect us because the wrapper we use does not call SigValidate with sigInfcheck argument set to true. However, it is not bad to bump to the latest version.

blst v0.3.11 fixes this vulnerability. This vulnerability does not affect us
because the wrapper we use does not call SigValidate with sigInfcheck argument
set to true. However, it is not bad to bump to the latest version.
@minh-bq minh-bq requested a review from DNK90 August 28, 2023 06:13
@minh-bq minh-bq merged commit 4ababdc into axieinfinity:feat/optimistic_fast_finality Aug 28, 2023
1 check passed
@minh-bq minh-bq deleted the chore/bump-blst-version branch August 28, 2023 11:56
minh-bq added a commit to minh-bq/ronin that referenced this pull request Aug 29, 2023
blst v0.3.11 fixes this vulnerability. This vulnerability does not affect us
because the wrapper we use does not call SigValidate with sigInfcheck argument
set to true. However, it is not bad to bump to the latest version.
minh-bq added a commit to minh-bq/ronin that referenced this pull request Sep 7, 2023
blst v0.3.11 fixes this vulnerability. This vulnerability does not affect us
because the wrapper we use does not call SigValidate with sigInfcheck argument
set to true. However, it is not bad to bump to the latest version.
minh-bq added a commit that referenced this pull request Sep 7, 2023
blst v0.3.11 fixes this vulnerability. This vulnerability does not affect us
because the wrapper we use does not call SigValidate with sigInfcheck argument
set to true. However, it is not bad to bump to the latest version.
andicrypt pushed a commit to andicrypt/ronin that referenced this pull request Nov 1, 2023
blst v0.3.11 fixes this vulnerability. This vulnerability does not affect us
because the wrapper we use does not call SigValidate with sigInfcheck argument
set to true. However, it is not bad to bump to the latest version.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants