{"componentChunkName":"component---node-modules-rocketseat-gatsby-theme-docs-core-src-templates-docs-query-js","path":"/manual-review/TransferFundsAfterLiquidationFacet-TFL","result":{"data":{"mdx":{"id":"c7a0043b-83fc-5a24-97b9-08fe77643bf3","excerpt":"TFL-01M: Inexistent Release of Bought NFT Type Severity Location Logical Fault TransferFundsAfterLiquidationFacet.sol:L23-L36 Description: The…","fields":{"slug":"/manual-review/TransferFundsAfterLiquidationFacet-TFL/"},"frontmatter":{"title":"TransferFundsAfterLiquidationFacet Manual Review Findings","description":"Contains all the findings that relate to manual review on the contract codebase","image":null,"disableTableOfContents":null},"body":"var _excluded = [\"components\"];\n\nfunction _extends() { _extends = Object.assign || function (target) { for (var i = 1; i < arguments.length; i++) { var source = arguments[i]; for (var key in source) { if (Object.prototype.hasOwnProperty.call(source, key)) { target[key] = source[key]; } } } return target; }; return _extends.apply(this, arguments); }\n\nfunction _objectWithoutProperties(source, excluded) { if (source == null) return {}; var target = _objectWithoutPropertiesLoose(source, excluded); var key, i; if (Object.getOwnPropertySymbols) { var sourceSymbolKeys = Object.getOwnPropertySymbols(source); for (i = 0; i < sourceSymbolKeys.length; i++) { key = sourceSymbolKeys[i]; if (excluded.indexOf(key) >= 0) continue; if (!Object.prototype.propertyIsEnumerable.call(source, key)) continue; target[key] = source[key]; } } return target; }\n\nfunction _objectWithoutPropertiesLoose(source, excluded) { if (source == null) return {}; var target = {}; var sourceKeys = Object.keys(source); var key, i; for (i = 0; i < sourceKeys.length; i++) { key = sourceKeys[i]; if (excluded.indexOf(key) >= 0) continue; target[key] = source[key]; } return target; }\n\n/* @jsxRuntime classic */\n\n/* @jsx mdx */\nvar _frontmatter = {\n  \"title\": \"TransferFundsAfterLiquidationFacet Manual Review Findings\",\n  \"description\": \"Contains all the findings that relate to manual review on the contract codebase\"\n};\nvar layoutProps = {\n  _frontmatter: _frontmatter\n};\nvar MDXLayout = \"wrapper\";\nreturn function MDXContent(_ref) {\n  var components = _ref.components,\n      props = _objectWithoutProperties(_ref, _excluded);\n\n  return mdx(MDXLayout, _extends({}, layoutProps, props, {\n    components: components,\n    mdxType: \"MDXLayout\"\n  }), mdx(\"h2\", {\n    \"id\": \"span-idtfl-01mtfl-01m-inexistent-release-of-bought-nftspan\",\n    \"style\": {\n      \"position\": \"relative\"\n    }\n  }, mdx(\"a\", {\n    parentName: \"h2\",\n    \"href\": \"#span-idtfl-01mtfl-01m-inexistent-release-of-bought-nftspan\",\n    \"aria-label\": \"span idtfl 01mtfl 01m inexistent release of bought nftspan permalink\",\n    \"className\": \"anchor before\"\n  }, mdx(\"svg\", {\n    parentName: \"a\",\n    \"aria-hidden\": \"true\",\n    \"focusable\": \"false\",\n    \"height\": \"16\",\n    \"version\": \"1.1\",\n    \"viewBox\": \"0 0 16 16\",\n    \"width\": \"16\"\n  }, mdx(\"path\", {\n    parentName: \"svg\",\n    \"fillRule\": \"evenodd\",\n    \"d\": \"M4 9h1v1H4c-1.5 0-3-1.69-3-3.5S2.55 3 4 3h4c1.45 0 3 1.69 3 3.5 0 1.41-.91 2.72-2 3.25V8.59c.58-.45 1-1.27 1-2.09C10 5.22 8.98 4 8 4H4c-.98 0-2 1.22-2 2.5S3 9 4 9zm9-3h-1v1h1c1 0 2 1.22 2 2.5S13.98 12 13 12H9c-.98 0-2-1.22-2-2.5 0-.83.42-1.64 1-2.09V6.25c-1.09.53-2 1.84-2 3.25C6 11.31 7.55 13 9 13h4c1.45 0 3-1.69 3-3.5S14.5 6 13 6z\"\n  }))), mdx(\"span\", {\n    id: \"TFL-01M\"\n  }, \"TFL-01M: Inexistent Release of Bought NFT\")), mdx(\"table\", null, mdx(\"thead\", {\n    parentName: \"table\"\n  }, mdx(\"tr\", {\n    parentName: \"thead\"\n  }, mdx(\"th\", {\n    parentName: \"tr\",\n    \"align\": null\n  }, \"Type\"), mdx(\"th\", {\n    parentName: \"tr\",\n    \"align\": null\n  }, \"Severity\"), mdx(\"th\", {\n    parentName: \"tr\",\n    \"align\": null\n  }, \"Location\"))), mdx(\"tbody\", {\n    parentName: \"table\"\n  }, mdx(\"tr\", {\n    parentName: \"tbody\"\n  }, mdx(\"td\", {\n    parentName: \"tr\",\n    \"align\": null\n  }, mdx(\"a\", {\n    parentName: \"td\",\n    \"href\": \"/reports/evergon-labs-tokenizer-6763f6df7b5d3d00195ae534/appendix/finding-types#logical-fault\"\n  }, \"Logical Fault\")), mdx(\"td\", {\n    parentName: \"tr\",\n    \"align\": null\n  }, mdx(\"img\", {\n    parentName: \"td\",\n    \"className\": \"o-severity o-major\",\n    \"src\": \"https://omniscia.io/report-assets/major.png\"\n  })), mdx(\"td\", {\n    parentName: \"tr\",\n    \"align\": null\n  }, mdx(\"a\", {\n    parentName: \"td\",\n    \"href\": \"https://github.com/evergonlabs/TMI-tokenizer/blob/3bf02f23825484f7fabe1671684226bc2ed2aea9/packages/contracts/contracts/subInternalFacets/twoClickLiquidationPhaseFacets/liquidationBuyBackFacets/transferFundsAfterLiquidation/TransferFundsAfterLiquidationFacet.sol#L23-L36\"\n  }, \"TransferFundsAfterLiquidationFacet.sol:L23-L36\"))))), mdx(\"h3\", {\n    \"id\": \"description\",\n    \"style\": {\n      \"position\": \"relative\"\n    }\n  }, mdx(\"a\", {\n    parentName: \"h3\",\n    \"href\": \"#description\",\n    \"aria-label\": \"description permalink\",\n    \"className\": \"anchor before\"\n  }, mdx(\"svg\", {\n    parentName: \"a\",\n    \"aria-hidden\": \"true\",\n    \"focusable\": \"false\",\n    \"height\": \"16\",\n    \"version\": \"1.1\",\n    \"viewBox\": \"0 0 16 16\",\n    \"width\": \"16\"\n  }, mdx(\"path\", {\n    parentName: \"svg\",\n    \"fillRule\": \"evenodd\",\n    \"d\": \"M4 9h1v1H4c-1.5 0-3-1.69-3-3.5S2.55 3 4 3h4c1.45 0 3 1.69 3 3.5 0 1.41-.91 2.72-2 3.25V8.59c.58-.45 1-1.27 1-2.09C10 5.22 8.98 4 8 4H4c-.98 0-2 1.22-2 2.5S3 9 4 9zm9-3h-1v1h1c1 0 2 1.22 2 2.5S13.98 12 13 12H9c-.98 0-2-1.22-2-2.5 0-.83.42-1.64 1-2.09V6.25c-1.09.53-2 1.84-2 3.25C6 11.31 7.55 13 9 13h4c1.45 0 3-1.69 3-3.5S14.5 6 13 6z\"\n  }))), \"Description:\"), mdx(\"p\", null, \"The \", mdx(\"a\", {\n    parentName: \"p\",\n    \"href\": \"https://github.com/evergonlabs/TMI-tokenizer/blob/3bf02f23825484f7fabe1671684226bc2ed2aea9/packages/contracts/contracts/subInternalFacets/twoClickLiquidationPhaseFacets/liquidationBuyBackFacets/transferFundsAfterLiquidation/TransferFundsAfterLiquidationFacet.sol#L23-L36\"\n  }, mdx(\"inlineCode\", {\n    parentName: \"a\"\n  }, \"TransferFundsAfterLiquidationFacet::doBuyBackAfterLiquidation\")), \" mechanism will not actually unlock the underlying NFT or release it to the new \", mdx(\"inlineCode\", {\n    parentName: \"p\"\n  }, \"account\"), \" that has paid for it which we consider invalid.\"), mdx(\"h3\", {\n    \"id\": \"impact\",\n    \"style\": {\n      \"position\": \"relative\"\n    }\n  }, mdx(\"a\", {\n    parentName: \"h3\",\n    \"href\": \"#impact\",\n    \"aria-label\": \"impact permalink\",\n    \"className\": \"anchor before\"\n  }, mdx(\"svg\", {\n    parentName: \"a\",\n    \"aria-hidden\": \"true\",\n    \"focusable\": \"false\",\n    \"height\": \"16\",\n    \"version\": \"1.1\",\n    \"viewBox\": \"0 0 16 16\",\n    \"width\": \"16\"\n  }, mdx(\"path\", {\n    parentName: \"svg\",\n    \"fillRule\": \"evenodd\",\n    \"d\": \"M4 9h1v1H4c-1.5 0-3-1.69-3-3.5S2.55 3 4 3h4c1.45 0 3 1.69 3 3.5 0 1.41-.91 2.72-2 3.25V8.59c.58-.45 1-1.27 1-2.09C10 5.22 8.98 4 8 4H4c-.98 0-2 1.22-2 2.5S3 9 4 9zm9-3h-1v1h1c1 0 2 1.22 2 2.5S13.98 12 13 12H9c-.98 0-2-1.22-2-2.5 0-.83.42-1.64 1-2.09V6.25c-1.09.53-2 1.84-2 3.25C6 11.31 7.55 13 9 13h4c1.45 0 3-1.69 3-3.5S14.5 6 13 6z\"\n  }))), \"Impact:\"), mdx(\"p\", null, \"A user who buys back a fractionalized wrapper NFT after it has been liquidated will not actually acquire it resulting in fund loss as the NFT will also become inaccessible by its original owner due to the state advancement.\"), mdx(\"h3\", {\n    \"id\": \"example\",\n    \"style\": {\n      \"position\": \"relative\"\n    }\n  }, mdx(\"a\", {\n    parentName: \"h3\",\n    \"href\": \"#example\",\n    \"aria-label\": \"example permalink\",\n    \"className\": \"anchor before\"\n  }, mdx(\"svg\", {\n    parentName: \"a\",\n    \"aria-hidden\": \"true\",\n    \"focusable\": \"false\",\n    \"height\": \"16\",\n    \"version\": \"1.1\",\n    \"viewBox\": \"0 0 16 16\",\n    \"width\": \"16\"\n  }, mdx(\"path\", {\n    parentName: \"svg\",\n    \"fillRule\": \"evenodd\",\n    \"d\": \"M4 9h1v1H4c-1.5 0-3-1.69-3-3.5S2.55 3 4 3h4c1.45 0 3 1.69 3 3.5 0 1.41-.91 2.72-2 3.25V8.59c.58-.45 1-1.27 1-2.09C10 5.22 8.98 4 8 4H4c-.98 0-2 1.22-2 2.5S3 9 4 9zm9-3h-1v1h1c1 0 2 1.22 2 2.5S13.98 12 13 12H9c-.98 0-2-1.22-2-2.5 0-.83.42-1.64 1-2.09V6.25c-1.09.53-2 1.84-2 3.25C6 11.31 7.55 13 9 13h4c1.45 0 3-1.69 3-3.5S14.5 6 13 6z\"\n  }))), \"Example:\"), mdx(\"pre\", null, mdx(\"code\", {\n    parentName: \"pre\",\n    \"className\": \"language-sol\",\n    \"metastring\": \"title=packages/contracts/contracts/subInternalFacets/twoClickLiquidationPhaseFacets/liquidationBuyBackFacets/transferFundsAfterLiquidation/TransferFundsAfterLiquidationFacet.sol highlight={10,13} lineNumbers=true lineOffset=22\",\n    \"title\": \"packages/contracts/contracts/subInternalFacets/twoClickLiquidationPhaseFacets/liquidationBuyBackFacets/transferFundsAfterLiquidation/TransferFundsAfterLiquidationFacet.sol\",\n    \"highlight\": \"{10,13}\",\n    \"lineNumbers\": \"true\",\n    \"lineOffset\": \"22\"\n  }, \"function doBuyBackAfterLiquidation(uint256 campaignId, address account, uint256 settledState) external onlyInternalDelegateCall {\\n    FungibleAndSemiFungiblePurchaseStorage.IdInfo memory info = FungibleAndSemiFungiblePurchaseStorage.layout().infoForId[\\n        campaignId\\n    ];\\n    uint256 totalFractionsPurchased = info.totalFractionsPurchased;\\n    uint256 totalBuybackAmount = IBuybackAmountFacet(address(this)).getBuybackAmount(campaignId);\\n    BuybackStorage.layout().obligationToEachFractionPerId[campaignId] = totalBuybackAmount / totalFractionsPurchased;\\n    uint256 requiredBuybackAmount = ILendingOracleFacet(address(this)).getRemainingObligation(campaignId);\\n\\n    IERC20(info.fundingCurrency).safeTransferFrom(account, address(this), requiredBuybackAmount);\\n\\n    uint256 currentState = IStateFacet(address(this)).getStateOfId(campaignId);\\n    IStateFacet(address(this)).changeState(campaignId, currentState, settledState);\\n}\\n\")), mdx(\"h3\", {\n    \"id\": \"recommendation\",\n    \"style\": {\n      \"position\": \"relative\"\n    }\n  }, mdx(\"a\", {\n    parentName: \"h3\",\n    \"href\": \"#recommendation\",\n    \"aria-label\": \"recommendation permalink\",\n    \"className\": \"anchor before\"\n  }, mdx(\"svg\", {\n    parentName: \"a\",\n    \"aria-hidden\": \"true\",\n    \"focusable\": \"false\",\n    \"height\": \"16\",\n    \"version\": \"1.1\",\n    \"viewBox\": \"0 0 16 16\",\n    \"width\": \"16\"\n  }, mdx(\"path\", {\n    parentName: \"svg\",\n    \"fillRule\": \"evenodd\",\n    \"d\": \"M4 9h1v1H4c-1.5 0-3-1.69-3-3.5S2.55 3 4 3h4c1.45 0 3 1.69 3 3.5 0 1.41-.91 2.72-2 3.25V8.59c.58-.45 1-1.27 1-2.09C10 5.22 8.98 4 8 4H4c-.98 0-2 1.22-2 2.5S3 9 4 9zm9-3h-1v1h1c1 0 2 1.22 2 2.5S13.98 12 13 12H9c-.98 0-2-1.22-2-2.5 0-.83.42-1.64 1-2.09V6.25c-1.09.53-2 1.84-2 3.25C6 11.31 7.55 13 9 13h4c1.45 0 3-1.69 3-3.5S14.5 6 13 6z\"\n  }))), \"Recommendation:\"), mdx(\"p\", null, \"We advise the \", mdx(\"a\", {\n    parentName: \"p\",\n    \"href\": \"https://github.com/evergonlabs/TMI-tokenizer/blob/3bf02f23825484f7fabe1671684226bc2ed2aea9/packages/contracts/contracts/subInternalFacets/twoClickLiquidationPhaseFacets/liquidationBuyBackFacets/transferFundsAfterLiquidation/TransferFundsAfterLiquidationFacet.sol#L23-L36\"\n  }, mdx(\"inlineCode\", {\n    parentName: \"a\"\n  }, \"TransferFundsAfterLiquidationFacet::doBuyBackAfterLiquidation\")), \" function to release the underlying wrapper NFT represented by the fractionalized \", mdx(\"a\", {\n    parentName: \"p\",\n    \"href\": \"https://eips.ethereum.org/EIPS/eip-1155\"\n  }, \"EIP-1155\"), \" NFT to its caller, ensuring that the buyback mechanism functions as intended.\"), mdx(\"h3\", {\n    \"id\": \"alleviation-71cda4ccfdcfa25fb96a4565f1f8143b350dd246\",\n    \"style\": {\n      \"position\": \"relative\"\n    }\n  }, mdx(\"a\", {\n    parentName: \"h3\",\n    \"href\": \"#alleviation-71cda4ccfdcfa25fb96a4565f1f8143b350dd246\",\n    \"aria-label\": \"alleviation 71cda4ccfdcfa25fb96a4565f1f8143b350dd246 permalink\",\n    \"className\": \"anchor before\"\n  }, mdx(\"svg\", {\n    parentName: \"a\",\n    \"aria-hidden\": \"true\",\n    \"focusable\": \"false\",\n    \"height\": \"16\",\n    \"version\": \"1.1\",\n    \"viewBox\": \"0 0 16 16\",\n    \"width\": \"16\"\n  }, mdx(\"path\", {\n    parentName: \"svg\",\n    \"fillRule\": \"evenodd\",\n    \"d\": \"M4 9h1v1H4c-1.5 0-3-1.69-3-3.5S2.55 3 4 3h4c1.45 0 3 1.69 3 3.5 0 1.41-.91 2.72-2 3.25V8.59c.58-.45 1-1.27 1-2.09C10 5.22 8.98 4 8 4H4c-.98 0-2 1.22-2 2.5S3 9 4 9zm9-3h-1v1h1c1 0 2 1.22 2 2.5S13.98 12 13 12H9c-.98 0-2-1.22-2-2.5 0-.83.42-1.64 1-2.09V6.25c-1.09.53-2 1.84-2 3.25C6 11.31 7.55 13 9 13h4c1.45 0 3-1.69 3-3.5S14.5 6 13 6z\"\n  }))), \"Alleviation (71cda4ccfdcfa25fb96a4565f1f8143b350dd246):\"), mdx(\"p\", null, \"The Evergon Labs team evaluated this exhibit and clarified that while the NFT is not meant to be released, the highlighted discrepancy does indicate a flaw in the way buybacks work whereby the forced unlock of an NFT should have happened before the buyback after a liquidation.\"), mdx(\"p\", null, \"This type of validation was introduced to the function that ultimately invokes the \", mdx(\"a\", {\n    parentName: \"p\",\n    \"href\": \"https://github.com/evergonlabs/TMI-tokenizer/blob/71cda4ccfdcfa25fb96a4565f1f8143b350dd246/packages/contracts/contracts/subInternalFacets/twoClickLiquidationPhaseFacets/liquidationBuyBackFacets/transferFundsAfterLiquidation/TransferFundsAfterLiquidationFacet.sol#L23-L36\"\n  }, mdx(\"inlineCode\", {\n    parentName: \"a\"\n  }, \"TransferFundsAfterLiquidationFacet::doBuyBackAfterLiquidation\")), \" function, alleviating this exhibit as a result.\"), mdx(ViewDiffButton, {\n    repoUrl: \"https://github.com/evergonlabs/TMI-tokenizer\",\n    mainHash: \"3bf02f23825484f7fabe1671684226bc2ed2aea9\",\n    fixHash: \"71cda4ccfdcfa25fb96a4565f1f8143b350dd246\",\n    gitHubIssue: \"138\",\n    mdxType: \"ViewDiffButton\"\n  }));\n}\n;\nMDXContent.isMDXComponent = true;","headings":[{"depth":2,"value":"<span id=\"TFL-01M\">TFL-01M: Inexistent Release of Bought NFT</span>"},{"depth":3,"value":"Description:"},{"depth":3,"value":"Impact:"},{"depth":3,"value":"Example:"},{"depth":3,"value":"Recommendation:"},{"depth":3,"value":"Alleviation (71cda4ccfdcfa25fb96a4565f1f8143b350dd246):"}]}},"pageContext":{"slug":"/manual-review/TransferFundsAfterLiquidationFacet-TFL/","prev":{"label":"ReturnFungAndSemiFungFractionsOmnichainFacet.sol (RFS-M)","link":"/manual-review/ReturnFungAndSemiFungFractionsOmnichainFacet-RFS"},"next":{"label":"TransferFundsOnBuybackFacet.sol (TFO-M)","link":"/manual-review/TransferFundsOnBuybackFacet-TFO"}}},"staticQueryHashes":["1954253342","2328931024","2501019404","973074209"]}