NULL Pointer Dereference in mrb_vm_exec with super in GitHub repository mruby/mruby prior to 3.2. This vulnerability is capable of making the mruby interpreter crash, thus affecting the availability of the system.
References
Link | Resource |
---|---|
https://github.com/mruby/mruby/commit/00acae117da1b45b318dc36531a7b0021b8097ae | Patch Third Party Advisory |
https://huntr.dev/bounties/6f930add-c9d8-4870-ae56-d4bd8354703b | Exploit Third Party Advisory |
Configurations
History
11 Apr 2022, 17:14
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : 4.9
v3 : 6.5 |
CPE | cpe:2.3:a:brew:mruby:*:*:*:*:*:ruby:*:* | |
References | (MISC) https://github.com/mruby/mruby/commit/00acae117da1b45b318dc36531a7b0021b8097ae - Patch, Third Party Advisory | |
References | (CONFIRM) https://huntr.dev/bounties/6f930add-c9d8-4870-ae56-d4bd8354703b - Exploit, Third Party Advisory |
02 Apr 2022, 08:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2022-04-02 08:15
Updated : 2024-02-04 22:29
NVD link : CVE-2022-1201
Mitre link : CVE-2022-1201
CVE.ORG link : CVE-2022-1201
JSON object : View
Products Affected
mruby
- mruby
CWE
CWE-476
NULL Pointer Dereference