Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
In versions of mruby up to and including 1.4.0, a use-after-free vulnerability exists in src/io.c::File#initilialize_copy(). An attacker that can cause Ruby code to be run can possibly use this to execute arbitrary code.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
mruby 安全漏洞
Vulnerability Description
mruby是一个Ruby语言的轻量级实现。 mruby 1.4.0及之前版本中的src/io.c文件的‘File#initilialize_copy()’函数存在释放后重用漏洞。攻击者可通过运行Ruby代码利用该漏洞执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A