CVE-2020-15866
PoC —CVSS 3.1
9.8 critical
EPSS
2%p81
Published
()
Modified
Description
mruby through 2.1.2-rc has a heap-based buffer overflow in the mrb_yield_with_class function in vm.c because of incorrect VM stack handling. It can be triggered via the stack_copy function.
In the news0 stories
No ingested article mentions this CVE yet.