CVE-2022-0240: NULL Pointer Dereference in mruby/mruby
Published Jan 17, 2022
·Updated
mruby is vulnerable to NULL Pointer Dereference
Affected Software
1 affected component
mruby mruby<3.2
Remediation
Event History
Jan 17, 2022
CVE Published
via MITRE·01:35 PM
Data Sourced
via MITRE·01:35 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is CVE-2022-0240?
CVE-2022-0240 is a vulnerability in the mruby software, which could lead to a NULL pointer dereference.
2
How does CVE-2022-0240 affect mruby?
CVE-2022-0240 affects mruby versions up to and excluding 3.2.
3
What is the severity of CVE-2022-0240?
The severity of CVE-2022-0240 is high, with a CVSS score of 7.5.
4
How can I fix CVE-2022-0240?
To fix CVE-2022-0240, update mruby to version 3.2 or higher.
5
Where can I find more information about CVE-2022-0240?
You can find more information about CVE-2022-0240 at the following references: [GitHub](https://github.com/mruby/mruby/commit/31fa3304049fc406a201a72293cce140f0557dca) and [Huntr.dev](https://huntr.dev/bounties/5857eced-aad9-417d-864e-0bdf17226cbb).