CVE-2022-43281

wasm-interp v1.0.29 was discovered to contain a heap overflow via the component std::vector<wabt::Type, std::allocator<wabt::Type>>::size() at /bits/stl_vector.h.
References
Link Resource
https://github.com/WebAssembly/wabt/issues/1981 Exploit Issue Tracking Patch Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:webassembly:wasm:1.0.29:*:*:*:*:*:*:*

History

01 Nov 2022, 16:35

Type Values Removed Values Added
First Time Webassembly
Webassembly wasm
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.8
CPE cpe:2.3:a:webassembly:wasm:1.0.29:*:*:*:*:*:*:*
References (MISC) https://github.com/WebAssembly/wabt/issues/1981 - (MISC) https://github.com/WebAssembly/wabt/issues/1981 - Exploit, Issue Tracking, Patch, Third Party Advisory
CWE CWE-787

28 Oct 2022, 21:16

Type Values Removed Values Added
New CVE

Information

Published : 2022-10-28 21:15

Updated : 2023-12-10 14:35


NVD link : CVE-2022-43281

Mitre link : CVE-2022-43281

CVE.ORG link : CVE-2022-43281


JSON object : View

Products Affected

webassembly

  • wasm
CWE
CWE-787

Out-of-bounds Write