Bug 1196230 - (CVE-2022-0632) VUL-1: CVE-2022-0632: mruby: NULL Pointer Dereference
(CVE-2022-0632)
VUL-1: CVE-2022-0632: mruby: NULL Pointer Dereference
Status: RESOLVED INVALID
Classification: openSUSE
Product: openSUSE Distribution
Classification: openSUSE
Component: Security
Leap 15.4
Other Other
: P4 - Low : Minor (vote)
: ---
Assigned To: Ferdinand Thiessen
Security Team bot
https://smash.suse.de/issue/324379/
:
Depends on:
Blocks:
  Show dependency treegraph
 
Reported: 2022-02-21 09:32 UTC by Robert Frohl
Modified: 2022-02-21 12:31 UTC (History)
0 users

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Comment 1 Robert Frohl 2022-02-21 09:33:39 UTC
relevant for openSUSE:Factory
Comment 2 Ferdinand Thiessen 2022-02-21 12:31:15 UTC
3.0.0 release used on Factory is not affected:

> % echo -ne 'R0M6OmNsYXNzLm5ld3tzdXBlciBzdXBlciBzdXBlcigmKQpiPTAsKuk9MH0=' | base64 -d > poc
> % mruby poc
>   poc:1:34: syntax error, unexpected ')'