Vulnerability Description
NULL Pointer Dereference in mrb_vm_exec with super in GitHub repository mruby/mruby prior to 3.2. This vulnerability is capable of making the mruby interpreter crash, thus affecting the availability of the system.
CVSS Score
MEDIUM
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Mruby | Mruby | < 3.2 |
Related Weaknesses (CWE)
References
- https://github.com/mruby/mruby/commit/00acae117da1b45b318dc36531a7b0021b8097aePatchThird Party Advisory
- https://huntr.dev/bounties/6f930add-c9d8-4870-ae56-d4bd8354703bExploitThird Party Advisory
- https://github.com/mruby/mruby/commit/00acae117da1b45b318dc36531a7b0021b8097aePatchThird Party Advisory
- https://huntr.dev/bounties/6f930add-c9d8-4870-ae56-d4bd8354703bExploitThird Party Advisory
FAQ
What is CVE-2022-1201?
CVE-2022-1201 is a vulnerability with a CVSS score of 6.5 (MEDIUM). NULL Pointer Dereference in mrb_vm_exec with super in GitHub repository mruby/mruby prior to 3.2. This vulnerability is capable of making the mruby interpreter crash, thus affecting the availability o...
How severe is CVE-2022-1201?
CVE-2022-1201 has been rated MEDIUM with a CVSS base score of 6.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2022-1201?
Check the references section above for vendor advisories and patch information. Affected products include: Mruby Mruby.