← Back

Webassembly

webassembly

45 CVEs • 5 products

Products (5)

Click to collapse
Toggle
Binaryen
binaryen
Wabt
wabt
Webassembly
webassembly
Wasm
wasm

CVEs (45)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
1Webassembly
1Webassembly
Feb 28, 2025
Mar 10, 2023
N/A· v4
5.5 MEDIUM· v3
N/A· v2
WebAssembly v1.0.29 was discovered to contain a segmentation fault via the component wabt::cat_compute_size.
1Webassembly
1Wabt
May 8, 2025
Oct 28, 2022
N/A· v4
5.5 MEDIUM· v3
N/A· v2
wasm2c v1.0.29 was discovered to contain an abort in CWriter::Write.
1Webassembly
1Wabt
May 8, 2025
Oct 28, 2022
N/A· v4
7.1 HIGH· v3
N/A· v2
wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallIndirectExpr->GetReturnCallDropKeepCount.
1Webassembly
1Wasm
May 8, 2025
Oct 28, 2022
N/A· v4
7.8 HIGH· v3
N/A· v2
wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector<wabt::Type, std::allocator<wabt::Type>>::size() at /bits/stl_vector.h.
1Webassembly
1Wabt
May 7, 2025
Oct 28, 2022
N/A· v4
7.1 HIGH· v3
N/A· v2
wasm-interp v1.0.29 was discovered to contain an out-of-bounds read via the component OnReturnCallExpr->GetReturnCallDropKeepCount.
1Webassembly
1Binaryen
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).
1Webassembly
1Binaryen
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::visitRethrow(wasm::Rethrow*).
1Webassembly
1Binaryen
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial of Service vulnerability exists in Binaryen 103. The program terminates with signal SIGKILL.
1Webassembly
1Binaryen
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::Tuple::validate.
1Webassembly
1Binaryen
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Stack Overflow vulnerability exists in Binaryen 103 via the printf_common function.
1Webassembly
1Binaryen
Nov 21, 2024
Jan 10, 2022
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial of Service vulnerability exists in Binaryen 104 due to an assertion abort in wasm::WasmBinaryBuilder::readFunctions.
2Fedoraproject
Webassembly
2Binaryen
Fedora
Nov 21, 2024
Dec 21, 2021
N/A· v4
5.5 MEDIUM· v3
4.3 MEDIUM· v2
A Denial of Service vulnerability exists in Binaryen 103 due to an Invalid memory address dereference in wasm::WasmBinaryBuilder::visitLet.
2Fedoraproject
Webassembly
2Binaryen
Fedora
Nov 21, 2024
Dec 21, 2021
N/A· v4
7.5 HIGH· v3
5.0 MEDIUM· v2
A Denial of Service vulnerability exits in Binaryen 103 due to an assertion abort in wasm::handle_unreachable.
1Webassembly
1Binaryen
Nov 21, 2024
Aug 29, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
An issue was discovered in Binaryen 1.38.32. Two visitors in ir/ExpressionManipulator.cpp can lead to a NULL pointer dereference in wasm::LocalSet::finalize in wasm/wasm.cpp. A crafted input can cause segmentation faults...Show more
An issue was discovered in Binaryen 1.38.32. Two visitors in ir/ExpressionManipulator.cpp can lead to a NULL pointer dereference in wasm::LocalSet::finalize in wasm/wasm.cpp. A crafted input can cause segmentation faults, leading to denial-of-service, as demonstrated by wasm2js.Show less
1Webassembly
1Binaryen
Nov 21, 2024
Aug 29, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
An issue was discovered in Binaryen 1.38.32. Missing validation rules in asmjs/asmangle.cpp can lead to an Assertion Failure at wasm/wasm.cpp in wasm::asmangle. A crafted input can cause denial-of-service, as demonstrate...Show more
An issue was discovered in Binaryen 1.38.32. Missing validation rules in asmjs/asmangle.cpp can lead to an Assertion Failure at wasm/wasm.cpp in wasm::asmangle. A crafted input can cause denial-of-service, as demonstrated by wasm2js.Show less
1Webassembly
1Binaryen
Nov 21, 2024
Feb 10, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
wasm::WasmBinaryBuilder::readUserSection in wasm-binary.cpp in Binaryen 1.38.22 triggers an attempt at excessive memory allocation, as demonstrated by wasm-merge and wasm-opt.
1Webassembly
1Binaryen
Nov 21, 2024
Feb 10, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp. Remote attackers could leverage this vulnerability to cause a denial-of-service via a wasm file, as demonst...Show more
In Binaryen 1.38.22, there is a use-after-free problem in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp. Remote attackers could leverage this vulnerability to cause a denial-of-service via a wasm file, as demonstrated by wasm-merge.Show less
1Webassembly
1Binaryen
Nov 21, 2024
Feb 10, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as d...Show more
A NULL pointer dereference was discovered in wasm::SExpressionWasmBuilder::parseExpression in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-as.Show less
1Webassembly
1Binaryen
Nov 21, 2024
Feb 10, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as de...Show more
A heap-based buffer over-read was discovered in wasm::SExpressionParser::skipWhitespace() in wasm-s-parser.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm2js.Show less
1Webassembly
1Binaryen
Nov 21, 2024
Feb 10, 2019
N/A· v4
6.5 MEDIUM· v3
4.3 MEDIUM· v2
A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrate...Show more
A heap-based buffer over-read was discovered in wasm::WasmBinaryBuilder::visitCall in wasm-binary.cpp in Binaryen 1.38.22. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-merge.Show less