We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 3f4bc94 commit b823437Copy full SHA for b823437
rubies/mruby/CVE-2025-7207.yml
@@ -3,11 +3,11 @@ engine: mruby
3
cve: 2025-7207
4
ghsa: 48pr-6hvf-39v3
5
url: https://nvd.nist.gov/vuln/detail/CVE-2025-7207
6
-title: Heap-based buffer overflow vulnerability in mruby 3.4.0-rc2
+title: Heap-based buffer overflow vulnerability in mruby 3.4.0
7
date: 2025-07-08
8
description: |
9
A vulnerability, which was classified as problematic, was found
10
- in mruby up to 3.4.0-rc2. Affected is the function scope_new of
+ in mruby up to 3.4.0. Affected is the function scope_new of
11
the file mrbgems/mruby-compiler/core/codegen.c of the component
12
nregs Handler. The manipulation leads to heap-based buffer overflow.
13
An attack has to be approached locally. The exploit has been
0 commit comments