CVE-2025-2368: WebAssembly wabt Malformed File binary-reader-interp.cc OnExport heap-based overflow
A vulnerability was found in WebAssembly wabt 1.0.36 and classified as critical. This issue affects the function wabt::interp::(anonymous namespace)::BinaryReaderInterp::OnExport of the file wabt/src/interp/binary-reader-interp.cc of the component Malformed File Handler. The manipulation leads to heap-based buffer overflow. The attack may be initiated remotely. The exploit has been disclosed to the public and may be used. It is recommended to apply a patch to fix this issue.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-2368?
CVE-2025-2368 is classified as a critical vulnerability.
How do I fix CVE-2025-2368?
To fix CVE-2025-2368, update to the latest version of WebAssembly wabt that addresses this vulnerability.
What component is affected by CVE-2025-2368?
CVE-2025-2368 affects the Malformed File Handler component in WebAssembly wabt.
What function is impacted by CVE-2025-2368?
CVE-2025-2368 impacts the wabt::interp::BinaryReaderInterp::OnExport function.
What does CVE-2025-2368 exploit?
CVE-2025-2368 exploits a flaw in the handling of malformed files by the WebAssembly wabt.