Out-of-Bounds Write Vulnerability in Wasm3 by Google
CVE-2021-45947

5.5MEDIUM

Key Information:

Status
Vendor
CVE Published:
1 January 2022

What is CVE-2021-45947?

Wasm3 version 0.5.0 is vulnerable to an out-of-bounds write. This vulnerability occurs in the Runtime_Release function, which is invoked during EvaluateExpression and InitDataSegments processes. Exploiting this flaw could lead to unintended behavior and security risks within applications utilizing Wasm3. It is crucial for developers and organizations relying on this version to apply necessary patches or updates to mitigate potential threats.

References

CVSS V3.1

Score:
5.5
Severity:
MEDIUM
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.