CVE-2023-31670: High severity webassembly binary toolkit vulnerability
An issue in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32 allows attackers to cause a Denial of Service (DoS) via running a crafted binary.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2023-31670?
The severity of CVE-2023-31670 is high with a severity value of 7.5.
How does CVE-2023-31670 affect wasm2c, wasm2wat, wasm-decompile, and wasm-validate?
CVE-2023-31670 allows attackers to cause a Denial of Service (DoS) by running a crafted binary in wasm2c 1.0.32, wasm2wat 1.0.32, wasm-decompile 1.0.32, and wasm-validate 1.0.32.
Which version of wasm2c, wasm2wat, wasm-decompile, and wasm-validate are affected by CVE-2023-31670?
The version 1.0.32 of wasm2c, wasm2wat, wasm-decompile, and wasm-validate are affected by CVE-2023-31670.
How can I fix CVE-2023-31670?
Update wasm2c, wasm2wat, wasm-decompile, and wasm-validate to a version higher than 1.0.32 to fix CVE-2023-31670.
Where can I find more information about CVE-2023-31670?
More information about CVE-2023-31670 can be found at the following link: https://github.com/WebAssembly/wabt/issues/2199