Intel

AIKIDO-2025-10008

Wire is vulnerable to Buffer Overflow

Buffer Overflow Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.

88

High Risk

This Affects:

swiftWire
3.3.0 - 5.1.1
Fixed in 5.2.0

TL;DR

Affected versions of this package are affected by insufficient bounds checking during serialization or deserialization processes that can lead to a buffer overflow vulnerability when a data type exceeds five layers of nesting. An attacker could exploit this issue to crash the application or cause memory corruption.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

Wire is vulnerable to Buffer Overflow in versions 3.3.0 - 5.1.1.

How to fix this

Upgrade the Wire library to the patch version.