Vulnerability Description
mrubyc through release3.4.1 was found to contain an out-of-bounds read in builtin missing-method lookup inside mrbc_find_method().
CVSS Score
4.4
MEDIUM
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:L
Related Weaknesses (CWE)
References
- https://github.com/mrubyc/mrubyc
- https://github.com/mrubyc/mrubyc/commit/f83a8b67ca1c7c62ac0dd548a363d79f767c4e30
- https://github.com/mrubyc/mrubyc/issues/279%2C
FAQ
What is CVE-2026-38973?
CVE-2026-38973 is a vulnerability with a CVSS score of 4.4 (MEDIUM). mrubyc through release3.4.1 was found to contain an out-of-bounds read in builtin missing-method lookup inside mrbc_find_method().
How severe is CVE-2026-38973?
CVE-2026-38973 has been rated MEDIUM with a CVSS base score of 4.4/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2026-38973?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.