CNNVD-202506-2597 Information

CNNVD ID

CNNVD-202506-2597

CVE-2025-6273

  • CNNVD Published: 2025-06-19

Description (Chinese)

WebAssembly wabt是WebAssembly开源的一个WebAssembly二进制工具包。 WebAssembly wabt 1.0.37及之前版本存在安全漏洞,该漏洞源于文件src/binary-reader-objdump.cc中函数LogOpcode存在可达断言。

Description (English)

WebAssembly Wabt is a WebAssembly binary toolkit from WebAssembly Open Source. There is a security loophole in WebAssemblyly wabt 1.0.37 and earlier versions, which stems from the existence of an acclaimable LogOpcode function in document src/binary-reader-objdump.cc.

Hazard Level

Critical

Vulnerability Type

其他

Affected Vendor

WebAssembly

Published

2025-06-19

Last Modified

2026-02-24

References

https://vuldb.com/?submit.593010 https://github.com/user-attachments/files/19529411/wabt_crash.txt https://github.com/WebAssembly/wabt/issues/2574 https://vuldb.com/?ctiid.313277 https://vuldb.com/?id.313277 https://access.redhat.com/security/cve/cve-2025-6273

Share on: