Skip to content

Instantly share code, notes, and snippets.

@haruki3hhh
Created November 8, 2024 18:17
Show Gist options
  • Save haruki3hhh/ac70bd83b9c0ed1de6289d818488da78 to your computer and use it in GitHub Desktop.
Save haruki3hhh/ac70bd83b9c0ed1de6289d818488da78 to your computer and use it in GitHub Desktop.
Advisory for CVE-2024-27529

Discoverers: Ziyi Guo, quhe, L4Nce

Details:

[Suggested description] wasm3 139076a contains memory leaks in Read_utf8


[VulnerabilityType Other] memory leaks


[Vendor of Product] https://github.com/wasm3/wasm3.git


[Affected Product Code Base] https://github.com/wasm3/wasm3.git 139076a - wasm3/wasm3#462


[Affected Component] attackers can launch attack both local and remote. whole wasm3 runtime is affected


[Attack Type] Remote


[Impact Denial of Service] true


[Attack Vectors] a crafted wasm file


[Reference] wasm3/wasm3#462


Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment