Trail of Bits

Axiom Halo2 Library Upgrades

Type

Security review

Client

Axiom

Date

2023-10

Domain

Crypto

Effort

6 wks

Section

Cryptography Reviews

Trail of Bits's security review of Axiom (Oct 2023) identified 6 issues: 1 high, and 5 informational.

Findings · 6

  1. 1 Solidity loader does not respect free memory pointer Informational
  2. 2 Libraries have unmaintained dependencies Informational
  3. 3 FpChip::range_check is unsound on CRTInteger values greater than 2^n*k High
  4. 4 Missing or inconsistent documentation Informational
  5. 5 Keccak lacks tests against known test vectors Informational
  6. 6 Feature-gated test no longer compiles Informational

Findings extracted from the published report PDF. See the full report below for details and remediation.

Related