Intel

AIKIDO-2025-10496

wasmi_core is vulnerable to Integer Overflow

Integer Overflow Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.

15

Low Risk

This Affects:

rustwasmi_core
0.45.0 - 0.47.0
Fixed in 0.48.0

TL;DR

Affected versions of the package are vulnerable to an integer overflow in the mod::read function, which could result in crashes or a Denial of Service (DoS). This flaw occurs when an integer value exceeds its maximum limit, potentially causing unexpected behavior or application instability.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

wasmi_core is vulnerable to Integer Overflow in versions 0.45.0 - 0.47.0.

How to fix this

Upgrade the wasmi_core library to the patch version.