| Vulnerability Name: | CVE-2022-0890 (CCN-221660) | ||||||||||||
| Assigned: | 2022-03-07 | ||||||||||||
| Published: | 2022-03-07 | ||||||||||||
| Updated: | 2022-03-17 | ||||||||||||
| Summary: | NULL Pointer Dereference in GitHub repository mruby/mruby prior to 3.2. | ||||||||||||
| CVSS v3 Severity: | 5.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H) 5.0 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C)
5.0 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:P/RL:O/RC:C)
| ||||||||||||
| CVSS v2 Severity: | 7.1 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:C)
| ||||||||||||
| Vulnerability Type: | CWE-476 | ||||||||||||
| Vulnerability Consequences: | Denial of Service | ||||||||||||
| References: | Source: MITRE Type: CNA CVE-2022-0890 Source: XF Type: UNKNOWN mruby-cve20220890-dos(221660) Source: CCN Type: mruby GIT Repository fiber.c: should pack 15+ arguments in an array. Source: MISC Type: Patch, Third Party Advisory https://github.com/mruby/mruby/commit/da48e7dbb20024c198493b8724adae1b842083aa Source: CCN Type: huntr Web site Out-of-bounds Read in mruby/mruby Source: CONFIRM Type: Exploit, Patch, Third Party Advisory https://huntr.dev/bounties/68e09ec1-6cc7-48b8-981d-30f478c70276 Source: CCN Type: huntr Web site NULL Pointer Dereference in mruby/mruby | ||||||||||||
| Vulnerable Configuration: | Configuration 1: Configuration CCN 1: Denotes that component is vulnerable | ||||||||||||
| BACK | |||||||||||||