AI-generated analysisPublished automatically and not human-verified. Validated context appears in community notes below.
← Watch feed
Low 47 Bitcoin

Merge pull request #711 from Foundation-Devices/SFT-8212-ur-type-checking

Public commit record

What the developer wrote

Authored by mjg-foundation

58/100 · Thin
Merge pull request #711 from Foundation-Devices/SFT-8212-ur-type-checking

SFT-8212: ur type checking
✓ Specific, descriptive subject✓ Names a concrete action or component✓ Links an issue, advisory, or supporting reference! No meaningful explanatory body
The short version

What changed, and why it matters

This commit hardens how Passport firmware handles QR-code and UR (Uniform Resource) data when importing multisig wallet configurations. It replaces low-level 'mp_check_self' type assertions with explicit Python-style error checks, adds a new QR-scan flow that only accepts expected UR types, and adds unit tests to make sure wrong types are rejected. The changes reduce the chance that a malformed or unexpected QR/UR could crash the device or be misinterpreted as wallet data.

Recommended action

Treat as a defensive hardening/fix commit. Review whether the new ScanQRFlow type restrictions are applied consistently across all QR/UR import flows, and verify the new unit tests run in CI. No immediate incident response is indicated by the diff alone.

Security signals we found

01

Replaces low-level assertions with explicit typed exceptions, reducing crash surface from malformed inputs

02

Adds UR type filtering (ur.Value.BYTES only) for multisig QR imports

03

Adds regression tests for invalid argument types and wrong UR variant unwraps

04

Adds CI rule to enforce explicit validation in foundation bindings

05

Fixes handling of QR scan errors (Error.QR_TOO_LARGE, Error.PSBT_OVERSIZED) in connect wallet flow

Risk score

Why this scored 47/100

Our methodology →
Potential impact 12/30
Exploitability 8/25
Stealth signal 6/15
Affected reach 10/15
Confidence 7/10
Evidence quality 4/5
Human-validated context

Community notes

Notes can correct, qualify, or add evidence to the AI analysis. Every note shown here has been validated by a human moderator.

No validated notes yet.

The AI analysis stands alone for now. Submit a note if you can add evidence or important context.