Heap-based Buffer Over-read in WAVM Virtual Machine

Heap-based Buffer Over-read in WAVM Virtual Machine

CVE-2018-16764 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

In WAVM through 2018-07-26, a crafted file sent to the WebAssembly Virtual Machine may cause a denial of service (application crash) or possibly have unspecified other impact because of an IR::FunctionValidationContext::catch_all heap-based buffer over-read.

Learn more about our Web App Pen Testing.