CVE-2023-46332: Medium severity webassembly binaryen vulnerability
Published Oct 23, 2023
·Updated
WebAssembly wabt 1.0.33 contains an Out-of-Bound Memory Write in DataSegment::Drop(), which lead to segmentation fault.
Affected Software
1 affected component
WebAssembly Webassembly Binary Toolkit=1.0.33
Event History
Oct 23, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-46332.
2
What is the severity of CVE-2023-46332?
The severity of CVE-2023-46332 is medium (5.5).
3
Which software version is affected by CVE-2023-46332?
WebAssembly wabt version 1.0.33 is affected by CVE-2023-46332.
4
What is the Common Weakness Enumeration (CWE) ID for this vulnerability?
The Common Weakness Enumeration (CWE) ID for this vulnerability is CWE-787.
5
How can I fix the vulnerability CVE-2023-46332?
Updating WebAssembly wabt to a version that is not affected, once it becomes available, is the recommended solution for fixing CVE-2023-46332.