Tag
critical
advisory
Wasmtime Winch Compiler Aarch64 Sandbox Escape Vulnerability
2 rules 2 TTPs 1 CVEA sandbox escape vulnerability exists in Wasmtime versions 25.0.0 to 36.0.7, 37.0.0 to 42.0.2, and version 43.0.0 when using the Winch compiler backend on aarch64 architecture, potentially allowing a Wasm guest to access host memory outside its sandbox, leading to denial of service, data leaks, or remote code execution.
wasmtime
sandbox-escape
memory-corruption
aarch64
2r
2t
1c
critical
advisory
Wasmtime Cranelift AArch64 Sandbox Escape Vulnerability
2 rules 2 TTPsA critical sandbox escape vulnerability exists in Wasmtime's Cranelift compilation backend on aarch64, allowing guest WebAssembly modules to bypass bounds checks and achieve arbitrary read/write access to host memory under specific configuration conditions.
Wasmtime
cranelift
aarch64
sandbox-escape
memory-corruption
2r
2t