A NULL pointer dereference was discovered in SExpressionWasmBuilder::makeBlock in wasm/wasm-s-parser.c in Binaryen 1.38.26. A crafted wasm input can cause a segmentation fault, leading to denial-of-service, as demonstrated by wasm-as.
{ "versions": [ { "introduced": "0" }, { "last_affected": "1.38.26" } ] }
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2020-18378.json"