GHSA-vjf8-9fx6-mv6x

    Dashboard / Vulnerabilities / GHSA-vjf8-9fx6-mv6x

    GHSA-vjf8-9fx6-mv6x

    Published: 18 Aug 2026Last Modified: 24 Aug 2026

    Summary: Triton VM Soundness Vulnerability due to Missing Constraint

    Details: The instruction `sponge_absorb_mem` Triton VM fails to verify that hashed values come from the claimed memory location. Malicious provers can substitute arbitrary data instead of actual memory contents. Any application using instruction `sponge_absorb_mem` to hash memory data can be given a proof for a forged hash that doesn't correspond to the actual memory. This breaks the security of memory-based commitments. The flaw was corrected in commits `17c7ba0a` and `ef9d9e72` by including the appropriate constraints.

    Affected packages

    Package

    Name: triton-vm

    Purl: pkg:cargo/triton-vm

    Affected ranges

    Type: SEMVER

    Events:

    Introduced- 0.42.0-alpha.4
    Fixed -4.0.0

    Affected versions

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    GHSA-vjf8-9fx6-mv6x | CVE-DB