First published: Thu Aug 29 2019(Updated: )
An issue was discovered in Binaryen 1.38.32. Missing validation rules in asmjs/asmangle.cpp can lead to an Assertion Failure at wasm/wasm.cpp in wasm::asmangle. A crafted input can cause denial-of-service, as demonstrated by wasm2js.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Webassembly Binaryen | <89 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
This vulnerability is identified by CVE-2019-15758.
The severity of this vulnerability is medium, with a CVSS score of 6.5.
The affected software is Webassembly Binaryen version up to exclusive 89.
This vulnerability can be exploited to cause denial-of-service.
Yes, you can find more information on this vulnerability at the following links: [GitHub Issue](https://github.com/WebAssembly/binaryen/issues/2288) and [GitHub Pull Request](https://github.com/WebAssembly/binaryen/pull/2290).