CNNVD-202508-411 Information

CNNVD ID

CNNVD-202508-411

CVE-2025-54873

  • CNNVD Published: 2025-08-06

Description (Chinese)

RISC Zero Ethereum是RISC Zero开源的一个计算平台。 RISC Zero Ethereum 2.1.0及之前版本和risc0-circuit-rv32im 2.0.4及之前版本存在数字错误漏洞,该漏洞源于有符号整数除法问题,可能导致无效输出。

Description (English)

RISC Zero Ethereum is a calculation platform for RISC Zero open source. RISC Zero Etherum 2.1.0 and previous versions and the risc0-circuit-rv32im 2.0.4 and previous versions have a digital error loop, which stems from a symbol integer division that may lead to invalid output.

Hazard Level

High

Vulnerability Type

数字错误

Affected Vendor

RISC Zero

Published

2025-08-06

Last Modified

2026-02-24

References

https://github.com/risc0/risc0/pull/3235 https://github.com/risc0/zirgen/pull/249 https://github.com/risc0/risc0/security/advisories/GHSA-f6rc-24x4-ppxp https://access.redhat.com/security/cve/cve-2025-54873

Patch

https://github.com/risc0/risc0/releases

Share on: