关键信息 CVE-2026-3285 Summary: Vulnerability Type: Out-of-bounds read/write in the function. Affected Product: Berry-lang Berry up to version 1.1.0. File: . CWE: CWE-125 (Out-of-bounds Read). CVSS Details: CVSS Meta Temp Score: 3.0 Current Exploit Price: $0-$5k CTI Interest Score: 2.93 Impact: Confidentiality: The product reads data past the end, or before the beginning, of the intended buffer. Exploit Information: Ease of Exploitation: Easy. Access Vector: Local access required. Exploit Availability: Proof-of-concept exploit available on GitHub. Mitigation: Patch: Available as patch 7149c59a39ba44feca261b12f06089f265fec176. Bugfix: Ready for download on GitHub. ``` 这些信息表明了漏洞的具体情况、影响以及可用的缓解措施。