
CVE-2026-34945: Redisにおけるバッファオーバーフロー脆弱性が報告。CVSSスコアは8.0で、サービスの信頼性が脅かされる可能性があるため注意が必要。
Post summary
A buffer overflow vulnerability in Redis (CVE-2026-34945) with CVSS 8.0 has been reported, highlighting the need for attention to service reliability.
Signal is active with 1 mentions in latest observed window
Recommended action window: Monitor and triage in normal cycle
NVD description
Wasmtime is a runtime for WebAssembly. From 25.0.0 to before 36.0.7, 42.0.2, and 43.0.1, Wasmtime's Winch compiler contains a bug where a 64-bit table, part of the memory64 proposal of WebAssembly, incorrectly translated the table.size instruction. This bug could lead to disclosing data on the host's stack to WebAssembly guests. The host's stack can possibly contain sensitive data related to other host-originating operations which is not intended to be disclosed to guests. This bug specifically arose from a mistake where the return value of table.size was statically typed as a 32-bit integer, as opposed to consulting the table's index type to see how large the returned register could be. When combined with details about Wnich's ABI, such as multi-value returns, this can be combined to read stack data from the host, within a guest. This vulnerability is fixed in 36.0.7, 42.0.2, and 43.0.1.
Priority
LOW
Exploitation
NONE
PoC
NONE
Patch
NONE
Momentum
STABLE
If you run products in this scope, you should treat this CVE as relevant to your environment.
| Date | Total | Labels |
|---|
| 2026-04-09 | 2 | Disclosure2 |
| 2026-06-19 | 1 | Disclosure1 |

CVE-2026-34945: Redisにおけるバッファオーバーフロー脆弱性が報告。CVSSスコアは8.0で、サービスの信頼性が脅かされる可能性があるため注意が必要。
Post summary
A buffer overflow vulnerability in Redis (CVE-2026-34945) with CVSS 8.0 has been reported, highlighting the need for attention to service reliability.

🚨*CVE* CVE-2026-34945 Wasmtime is a runtime for WebAssembly. From 25.0.0 to before 36.0.7, 42.0.2, and 43.0.1, Wasmtime's Winch compiler contains a bug where a 64-bit table, part of the me… https://www.cve.org/CVERecord?id=CVE-2026-34945 ----- Traducción: CVE-2026-34945 Was… http://infoflow.cloud`
Post summary
The tweet announces CVE-2026-34945, describing a bug in Wasmtime’s Winch compiler that impacts 64‑bit tables across several versions, but provides no PoC, exploit code, or patch information.

CVE-2026-34945 Wasmtime is a runtime for WebAssembly. From 25.0.0 to before 36.0.7, 42.0.2, and 43.0.1, Wasmtime's Winch compiler contains a bug where a 64-bit table, part of the me… https://www.cve.org/CVERecord?id=CVE-2026-34945
Post summary
The post describes the discovery of a bug in Wasmtime's Winch compiler affecting 64‑bit tables, without detailing PoCs, exploits, or remediation.
1 of 1 entries
| Part | Vendor | Product | Version | Target SW | Target HW |
|---|---|---|---|---|---|
| App | bytecodealliance | wasmtime | - | rust | - |