First published: Mon Mar 17 2025(Updated: )
A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical. This issue affects the function wabt::interp::(anonymous namespace)::BinaryReaderInterp::OnExport of the file wabt/src/interp/binary-reader-interp.cc of the component Malformed File Handler. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
Credit: cna@vuldb.com
Affected Software | Affected Version | How to fix |
---|---|---|
WebAssembly wabt |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-2368 is classified as a critical vulnerability.
To fix CVE-2025-2368, update to the latest version of WebAssembly wabt that addresses this vulnerability.
CVE-2025-2368 affects the Malformed File Handler component in WebAssembly wabt.
CVE-2025-2368 impacts the wabt::interp::BinaryReaderInterp::OnExport function.
CVE-2025-2368 exploits a flaw in the handling of malformed files by the WebAssembly wabt.