Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
mruby through 2.1.2-rc has a heap-based buffer overflow in the mrb_yield_with_class function in vm.c because of incorrect VM stack handling. It can be triggered via the stack_copy function.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
mruby 缓冲区错误漏洞
Vulnerability Description
mruby是一款Ruby语言的轻量级实现。 mruby 2.1.2-rc及之前版本中的vm.c文件的‘mrb_yield_with_class’函数存在缓冲区错误漏洞,该漏洞源于程序没有正确检查边界。远程攻击者可借助‘stack_copy’函数利用该漏洞在系统上执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A