CVE-2022-1106

use after free in mrb_vm_exec in GitHub repository mruby/mruby prior to 3.2.
Configurations

Configuration 1 (hide)

cpe:2.3:a:mruby:mruby:*:*:*:*:*:*:*:*

History

31 Mar 2022, 16:29

Type Values Removed Values Added
CWE CWE-416
CVSS v2 : unknown
v3 : unknown
v2 : 6.4
v3 : 9.1
CPE cpe:2.3:a:mruby:mruby:*:*:*:*:*:*:*:*
References (CONFIRM) https://huntr.dev/bounties/16b9d0ea-71ed-41bc-8a88-2deb4c20be8f - (CONFIRM) https://huntr.dev/bounties/16b9d0ea-71ed-41bc-8a88-2deb4c20be8f - Exploit, Patch, Third Party Advisory
References (MISC) https://github.com/mruby/mruby/commit/7f5a490d09f4d56801ac3a3e4e39e03e1471b44c - (MISC) https://github.com/mruby/mruby/commit/7f5a490d09f4d56801ac3a3e4e39e03e1471b44c - Patch, Third Party Advisory
First Time Mruby mruby
Mruby

27 Mar 2022, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-27 14:15

Updated : 2023-12-10 14:22


NVD link : CVE-2022-1106

Mitre link : CVE-2022-1106

CVE.ORG link : CVE-2022-1106


JSON object : View

Products Affected

mruby

  • mruby
CWE
CWE-416

Use After Free