CVE-2025-64704Improper Check for Unusual or Exceptional Conditions in Wasm-micro-runtime

Severity
5.5MEDIUMNVD
EPSS
0.0%
top 90.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
Latest updateNov 11
PublishedNov 25

Description

WebAssembly Micro Runtime (WAMR) is a lightweight standalone WebAssembly (Wasm) runtime. Prior to version 2.4.4, WAMR is susceptible to a segmentation fault in v128.store instruction. This issue has been patched in version 2.4.4.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:HExploitability: 1.8 | Impact: 3.6

📋Vendor Advisories

1
Microsoft
WebAssembly Micro Runtime vulnerable to a segmentation fault in v128.store instruction2025-11-11
CVE-2025-64704 — Wasm-micro-runtime vulnerability | cvebase