Show filters
38 Total Results
Displaying 1-10 of 38
Sort by:
Attacker Value
Unknown

CVE-2021-46023

Disclosure Date: February 14, 2023 (last updated October 08, 2023)
An Untrusted Pointer Dereference was discovered in function mrb_vm_exec in mruby before 3.1.0-rc. The vulnerability causes a segmentation fault and application crash.
Attacker Value
Unknown

CVE-2022-1934

Disclosure Date: May 31, 2022 (last updated October 07, 2023)
Use After Free in GitHub repository mruby/mruby prior to 3.2.
Attacker Value
Unknown

CVE-2022-1427

Disclosure Date: April 23, 2022 (last updated February 23, 2025)
Out-of-bounds Read in mrb_obj_is_kind_of in in GitHub repository mruby/mruby prior to 3.2. # Impact: Possible arbitrary code execution if being exploited.
Attacker Value
Unknown

CVE-2022-1286

Disclosure Date: April 10, 2022 (last updated February 23, 2025)
heap-buffer-overflow in mrb_vm_exec in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
Attacker Value
Unknown

CVE-2022-1276

Disclosure Date: April 10, 2022 (last updated February 23, 2025)
Out-of-bounds Read in mrb_get_args in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
Attacker Value
Unknown

CVE-2022-1212

Disclosure Date: April 05, 2022 (last updated February 23, 2025)
Use-After-Free in str_escape in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
Attacker Value
Unknown

CVE-2022-1201

Disclosure Date: April 02, 2022 (last updated February 23, 2025)
NULL Pointer Dereference in mrb_vm_exec with super in GitHub repository mruby/mruby prior to 3.2. This vulnerability is capable of making the mruby interpreter crash, thus affecting the availability of the system.
Attacker Value
Unknown

CVE-2022-1106

Disclosure Date: March 27, 2022 (last updated February 23, 2025)
use after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2.
Attacker Value
Unknown

CVE-2022-1071

Disclosure Date: March 26, 2022 (last updated February 23, 2025)
User after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2.
Attacker Value
Unknown

CVE-2022-0890

Disclosure Date: March 10, 2022 (last updated February 23, 2025)
NULL Pointer Dereference in GitHub repository mruby/mruby prior to 3.2.