[Suggested description] wasm3 139076a is vulnerable to Denial of Service (DoS).
[VulnerabilityType Other] DoS
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| > [Discoverer] | |
| > Ziyi Guo, L4Nce, Quhe | |
| > [Description] | |
| > An issue in bytecodealliance wasm-micro-runtime before v.b3f728c and | |
| > fixed in commit 06df58f allows a remote attacker to escalate privileges | |
| > via a crafted file to the check_was_abi_compatibility function | |
| > | |
| > ------------------------------------------ |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| # Discoverers: Ziyi Guo | |
| # Details: | |
| > [Suggested description] | |
| > wac commit 385e1 was discovered to contain a heap overflow via the | |
| > load_module function at /wac-asan/wa.c. This vulnerability allows | |
| > attackers to cause a Denial of Service (DoS) via a crafted wasm file. | |
| > | |
| > ------------------------------------------ | |
| > | |
| > [Vulnerability Type] |
OlderNewer