Vulnerabilities > CVE-2019-15758 - Reachable Assertion vulnerability in Webassembly Binaryen

047910
CVSS 4.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL

Summary

An issue was discovered in Binaryen 1.38.32. Missing validation rules in asmjs/asmangle.cpp can lead to an Assertion Failure at wasm/wasm.cpp in wasm::asmangle. A crafted input can cause denial-of-service, as demonstrated by wasm2js.

Vulnerable Configurations

Part Description Count
Application
Webassembly
89

Common Weakness Enumeration (CWE)