CVE-2026-34971 | bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0 WebAssembly Config::wasm_memory64 out-of-bounds (GHSA-jhxm-h53p-jm7w)
A vulnerability, which was classified as problematic, has been found in bytecodealliance wasmtime up to 36.0.6/42.0.1/44.0.0. This impacts the function Config::wasm_memory64 of the component WebAssembly Module. The manipulation leads to out-of-bounds read.
This vulnerability is documented as CVE-2026-34971. The attack can be initiated remotely. There is not any exploit available.
It is advisable to upgrade the affected component.