rpm package
opensuse/mruby&distro=openSUSE Tumbleweed
pkg:rpm/opensuse/mruby&distro=openSUSE%20Tumbleweed
Vulnerabilities (13)
| CVE | Sev | CVSS | KEV | Affected versions | Fixed in | Published | Description |
|---|---|---|---|---|---|---|---|
| CVE-2025-7207 | Low | 3.3 | < 3.4.0-1.1 | 3.4.0-1.1 | Jul 9, 2025 | A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope_new of the file mrbgems/mruby-compiler/core/codegen.c of the component nregs Handler. The manipulation leads to heap-based buffer overflow. An attack has to be | |
| CVE-2022-1427 | Hig | 7.8 | < 3.1.0-1.1 | 3.1.0-1.1 | Apr 23, 2022 | Out-of-bounds Read in mrb_obj_is_kind_of in in GitHub repository mruby/mruby prior to 3.2. # Impact: Possible arbitrary code execution if being exploited. | |
| CVE-2022-1286 | Cri | 9.8 | < 3.0.0-6.1 | 3.0.0-6.1 | Apr 10, 2022 | heap-buffer-overflow in mrb_vm_exec in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited. | |
| CVE-2022-1276 | Cri | 9.8 | < 3.4.0-1.1 | 3.4.0-1.1 | Apr 10, 2022 | Out-of-bounds Read in mrb_get_args in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited. | |
| CVE-2022-1212 | Cri | 9.8 | < 3.0.0-6.1 | 3.0.0-6.1 | Apr 5, 2022 | Use-After-Free in str_escape in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited. | |
| CVE-2022-0890 | Med | 5.5 | < 3.1.0-1.1 | 3.1.0-1.1 | Mar 10, 2022 | NULL Pointer Dereference in GitHub repository mruby/mruby prior to 3.2. | |
| CVE-2022-0717 | Cri | 9.1 | < 3.4.0-1.1 | 3.4.0-1.1 | Feb 23, 2022 | Out-of-bounds Read in GitHub repository mruby/mruby prior to 3.2. | |
| CVE-2022-0623 | Cri | 9.1 | < 3.4.0-1.1 | 3.4.0-1.1 | Feb 17, 2022 | Out-of-bounds Read in Homebrew mruby prior to 3.2. | |
| CVE-2022-0481 | Hig | 7.5 | < 3.0.0-4.1 | 3.0.0-4.1 | Feb 4, 2022 | NULL Pointer Dereference in Homebrew mruby prior to 3.2. | |
| CVE-2022-0326 | Med | 5.5 | < 3.1.0-1.1 | 3.1.0-1.1 | Jan 21, 2022 | NULL Pointer Dereference in Homebrew mruby prior to 3.2. | |
| CVE-2022-0240 | Hig | 7.5 | < 3.0.0-3.1 | 3.0.0-3.1 | Jan 17, 2022 | mruby is vulnerable to NULL Pointer Dereference | |
| CVE-2022-0080 | Cri | 9.8 | < 3.0.0-3.1 | 3.0.0-3.1 | Jan 2, 2022 | mruby is vulnerable to Heap-based Buffer Overflow | |
| CVE-2021-4110 | Hig | 7.5 | < 3.0.0-2.1 | 3.0.0-2.1 | Dec 15, 2021 | mruby is vulnerable to NULL Pointer Dereference |
- affected < 3.4.0-1.1fixed 3.4.0-1.1
A vulnerability, which was classified as problematic, was found in mruby up to 3.4.0-rc2. Affected is the function scope_new of the file mrbgems/mruby-compiler/core/codegen.c of the component nregs Handler. The manipulation leads to heap-based buffer overflow. An attack has to be
- affected < 3.1.0-1.1fixed 3.1.0-1.1
Out-of-bounds Read in mrb_obj_is_kind_of in in GitHub repository mruby/mruby prior to 3.2. # Impact: Possible arbitrary code execution if being exploited.
- affected < 3.0.0-6.1fixed 3.0.0-6.1
heap-buffer-overflow in mrb_vm_exec in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
- affected < 3.4.0-1.1fixed 3.4.0-1.1
Out-of-bounds Read in mrb_get_args in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
- affected < 3.0.0-6.1fixed 3.0.0-6.1
Use-After-Free in str_escape in mruby/mruby in GitHub repository mruby/mruby prior to 3.2. Possible arbitrary code execution if being exploited.
- affected < 3.1.0-1.1fixed 3.1.0-1.1
NULL Pointer Dereference in GitHub repository mruby/mruby prior to 3.2.
- affected < 3.4.0-1.1fixed 3.4.0-1.1
Out-of-bounds Read in GitHub repository mruby/mruby prior to 3.2.
- affected < 3.4.0-1.1fixed 3.4.0-1.1
Out-of-bounds Read in Homebrew mruby prior to 3.2.
- affected < 3.0.0-4.1fixed 3.0.0-4.1
NULL Pointer Dereference in Homebrew mruby prior to 3.2.
- affected < 3.1.0-1.1fixed 3.1.0-1.1
NULL Pointer Dereference in Homebrew mruby prior to 3.2.
- affected < 3.0.0-3.1fixed 3.0.0-3.1
mruby is vulnerable to NULL Pointer Dereference
- affected < 3.0.0-3.1fixed 3.0.0-3.1
mruby is vulnerable to Heap-based Buffer Overflow
- affected < 3.0.0-2.1fixed 3.0.0-2.1
mruby is vulnerable to NULL Pointer Dereference