PT-2024-25770 · Bytecode Alliance+2 · Wasm-Micro-Runtime+2

Mobscenezo

·

Published

2024-04-23

·

Updated

2025-06-13

·

CVE-2024-34251

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:N/I:N/A:C
Name of the Vulnerable Software and Affected Versions Bytecode Alliance wasm-micro-runtime version 2.0.0
Description An out-of-bound memory read issue was discovered, allowing a remote attacker to cause a denial of service via the block type get arity function in core/iwasm/interpreter/wasm.h.
Recommendations For Bytecode Alliance wasm-micro-runtime version 2.0.0, consider disabling the block type get arity function as a temporary workaround until a patch is available.

Exploit

Fix

DoS

Out of bounds Read

Weakness Enumeration

Related Identifiers

BDU:2025-02747
CVE-2024-34251
USN-7250-1

Affected Products

Linuxmint
Ubuntu
Wasm-Micro-Runtime