Back to Database
Status published
High
CVE-2022-1201
NULL Pointer Dereference in mrb_vm_exec with super in mruby/mruby
Vulnerability Description
NULL Pointer Dereference in mrb_vm_exec with super in GitHub repository mruby/mruby prior to 3.2. This vulnerability is capable of making the mruby interpreter crash, thus affecting the availability of the system.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2022-1201
Credits & Attribution
No credits recorded in the NVD database.
References
More from mruby
View All →CVE-2022-1934
Use After Free in mruby/mruby
Medium
5.1
CVE-2022-1427
Out-of-bounds Read in mrb_obj_is_kind_of in in mruby/mruby
High
7.7
CVE-2022-1286
heap-buffer-overflow in mrb_vm_exec in mruby/mruby in mruby/mruby
Medium
5.9
CVE-2022-1276
Out-of-bounds Read in mrb_get_args in mruby/mruby
High
8.4
CVE-2022-1212
Use-After-Free in str_escape in mruby/mruby in mruby/mruby
Critical
9.3
Affected Vendor
mruby
View all reports →Affected Software
mruby/mruby
Vulnerable Versions:
unspecified
Timeline
Official Publish:
April 2nd, 2022
Last Modified:
August 2nd, 2024
Added to House:
July 21st, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H