CVE-2018-11743: Critical severity airbrake vulnerability
Published Jun 5, 2018
·Updated
The initcopy function in kernel.c in mruby 1.4.1 makes initializecopy calls for TTICLASS objects, which allows attackers to cause a denial of service (mrbhashkeys uninitialized pointer and application crash) or possibly have unspecified other impact.
Affected Software
2 affected components
mruby mruby=1.4.1
Debian Debian Linux=9.0
Remediation
Patch Available
Event History
Jun 5, 2018
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-11743?
CVE-2018-11743 is a vulnerability in mruby 1.4.1 that allows attackers to cause a denial of service or potentially have other impact.
2
How does CVE-2018-11743 affect mruby?
CVE-2018-11743 affects mruby 1.4.1.
3
What is the severity of CVE-2018-11743?
The severity of CVE-2018-11743 is critical with a CVSS score of 9.8.
4
How can CVE-2018-11743 be exploited?
CVE-2018-11743 can be exploited by attackers to cause a denial of service or potentially have other impact.
5
Are there any fixes available for CVE-2018-11743?
Yes, there is a fix available for CVE-2018-11743. It is recommended to update to a version of mruby that includes the fix.