If initInterestRate in the TempusPool's constructor is given as 0,
no funds can be withdrawn as getRedemptionAmounts() always panic errors with
division by 0 (link).
Recommended Mitigation Steps
It should be stated in the constructor's specs that initInterestRate should
not be 0.
Handle
pmerkleplant
Vulnerability details
Impact
If
initInterestRate
in theTempusPool
's constructor is given as 0, no funds can be withdrawn asgetRedemptionAmounts()
always panic errors with division by 0 (link).Recommended Mitigation Steps
It should be stated in the constructor's specs that
initInterestRate
should not be 0.