Security Advisory

CVE-2023-52284

5.5
MEDIUM

Vulnerability Description

Bytecode Alliance wasm-micro-runtime (aka WebAssembly Micro Runtime or WAMR) before 1.3.0 can have an "double free or corruption" error for a valid WebAssembly module because push_pop_frame_ref_offset is mishandled.
Published Date December 31, 2023
Official Source NIST NVD Advisory