AI-generated analysisPublished automatically and not human-verified. Validated context appears in community notes below.
← Watch feed
Moderate 59 Cryptographic libraries

wallet2: fix derivation handling in check_tx_proof and is_out_to_acc

Public commit record

What the developer wrote

Authored by selsta

50/100 · Thin
wallet2: fix derivation handling in check_tx_proof and is_out_to_acc
✓ Specific, descriptive subject✓ Names a concrete action or component! No meaningful explanatory body
The short version

What changed, and why it matters

This patch fixes two related bugs in how Monero's wallet checks whether a transaction output belongs to your account and how it verifies transaction proofs. The bugs involve using an uninitialized or 'null' key derivation value, which could lead to incorrect matching of outputs or failed proof verification. In the worst case, a wallet might wrongly decide an output belongs to someone else, or an attacker might craft a proof that passes when it should not. The patch adds explicit null-derivation checks and ensures additional derivations are only accessed when they exist.

Recommended action

Apply the patch. Review callers of `is_out_to_acc` and `check_tx_proof` to confirm no other paths pass null or uninitialized derivations. Consider adding unit tests for null-derivation and out-of-bounds additional-derivation cases. Monitor Monero Project advisories for any follow-up security disclosure.

Security signals we found

01

Use of uninitialized key derivation in `check_tx_proof`

02

Use of null/zero key derivation in `is_out_to_acc` without validation

03

Potential out-of-bounds read in `additional_derivations[output_index]`

04

Incorrect output ownership classification could affect balance detection or proof verification

05

Patch is defensive and partial; no explicit CVE or advisory supplied

Risk score

Why this scored 59/100

Our methodology →
Potential impact 18/30
Exploitability 12/25
Stealth signal 10/15
Affected reach 10/15
Confidence 6/10
Evidence quality 3/5
Human-validated context

Community notes

Notes can correct, qualify, or add evidence to the AI analysis. Every note shown here has been validated by a human moderator.

No validated notes yet.

The AI analysis stands alone for now. Submit a note if you can add evidence or important context.