CNNVD-202507-3562 Information

CNNVD ID

CNNVD-202507-3562

CVE-2025-54429

  • CNNVD Published: 2025-07-28

Description (Chinese)

Polkadot Frontier是Polkadot EVM开源的一个提供以太坊虚拟机兼容层的应用程序。 Polkadot Frontier 0822030之前版本存在代码问题漏洞,该漏洞源于CallableByContract实现错误,可能导致预编译调用不当。

Description (English)

Polkadot Frontier is an application from Polkadot EVM open source that provides a virtual machine-compatible layer in the Taifeng. Before Polkadot Frontier 0822030, there was a code problem loophole, which originated in CallableByContract ’ s error, which could lead to an improper pre-editation call.

Hazard Level

High

Vulnerability Type

代码问题

Affected Vendor

Polkadot EVM

Published

2025-07-28

Last Modified

2026-02-24

References

https://github.com/polkadot-evm/frontier/pull/1655 https://github.com/polkadot-evm/frontier/security/advisories/GHSA-fr62-ppwc-mc2h https://dotpal.io/assets/files/frontier-srlabs-2505-718c3bfa5df9fed1862fed05de506859.pdf https://access.redhat.com/security/cve/cve-2025-54429

Patch

https://github.com/polkadot-evm/frontier/tags

Share on: