PT-2022-26827 · Unknown+1 · Wasm-Interp+1

·

CVE-2022-43281

·

Published

2022-10-28

·

Updated

2022-11-01

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions wasm-interp version 1.0.29
Description A heap overflow issue was discovered in the std::vector component, specifically via std::vector<wabt::Type, std::allocator<wabt::Type>>::size() at /bits/stl vector.h.
Recommendations For version 1.0.29, consider updating to a newer version that contains a fix for this issue, if available. As a temporary workaround, restrict access to the vulnerable component to minimize the risk of exploitation.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-43281
PYSEC-2022-43187

Affected Products

Debian
Wasm-Interp