-
Notifications
You must be signed in to change notification settings - Fork 781
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Heap buffer overflow in OP_ENTER #4038
Comments
matz
added a commit
that referenced
this issue
Jun 7, 2018
This change is required to support #4038.
ksekimoto
added a commit
to ksekimoto/mruby
that referenced
this issue
Jul 16, 2021
…y#3219 This change is required to support mruby#4038.
ksekimoto
added a commit
to ksekimoto/mruby
that referenced
this issue
Jul 16, 2021
Hello, we're investigating the issue reports in security. Since we observed that this issue may relate to a potential vulnerability, has it been disclosed in CVE already? Hope to receive your reply. |
I don't think so. It's a 6-year-old bug, and no one currently uses the version with this issue. |
That's OK, we have found that it is disclosed in CVE-2018-12248. Thank you so much for your reply! |
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
The following input demonstrates a crash:
This issue looks similar to #3641.
ASAN report:
This issue was reported by Daniel Teuchert, Cornelius Aschermann, Tommaso Frassetto and Tigist Abera (https://hackerone.com/pnoltof).
The text was updated successfully, but these errors were encountered: