CVE-2025-64704: WebAssembly Micro Runtime vulnerable to a segmentation fault in v128.store instruction
WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. Prior to version 2.4.4, WAMR is susceptible to a segmentation fault in v128.store instruction. This issue has been patched in version 2.4.4.
Other sources
WebAssembly Micro Runtime vulnerable to a segmentation fault in v128.store instruction
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64704?
CVE-2025-64704 has a high severity rating due to its potential to cause a segmentation fault, impacting application stability.
How do I fix CVE-2025-64704?
To fix CVE-2025-64704, upgrade WebAssembly Micro Runtime to version 2.4.4 or later.
What versions are affected by CVE-2025-64704?
CVE-2025-64704 affects all versions of WebAssembly Micro Runtime prior to 2.4.4.
What is the impact of CVE-2025-64704?
The impact of CVE-2025-64704 includes application crashes due to a segmentation fault during the execution of the v128.store instruction.
Is CVE-2025-64704 related to WebAssembly applications?
Yes, CVE-2025-64704 specifically pertains to WebAssembly applications utilizing the WebAssembly Micro Runtime.