CVE Vulnerabilities

CVE-2022-0326

NULL Pointer Dereference

Published: Jan 21, 2022 | Modified: Nov 21, 2024
CVSS 3.x
5.5
MEDIUM
Source:
NVD
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

NULL Pointer Dereference in Homebrew mruby prior to 3.2.

Weakness

The product dereferences a pointer that it expects to be valid but is NULL.

Affected Software

NameVendorStart VersionEnd Version
MrubyMruby*3.2 (excluding)
CargoUbuntubionic*
CargoUbuntuimpish*
CargoUbuntukinetic*
CargoUbuntutrusty*
CargoUbuntuxenial*
GroongaUbuntubionic*
GroongaUbuntufocal*
GroongaUbuntuimpish*
GroongaUbuntukinetic*
GroongaUbuntulunar*
GroongaUbuntumantic*
GroongaUbuntuoracular*
GroongaUbuntuplucky*
GroongaUbuntutrusty*
GroongaUbuntuxenial*
H2oUbuntubionic*
H2oUbuntufocal*
H2oUbuntuimpish*
H2oUbuntukinetic*
H2oUbuntulunar*
H2oUbuntumantic*
H2oUbuntuoracular*
H2oUbuntuplucky*
H2oUbuntutrusty*
H2oUbuntuxenial*
MrubyUbuntubionic*
MrubyUbuntufocal*
MrubyUbuntuimpish*
MrubyUbuntukinetic*
MrubyUbuntulunar*
MrubyUbuntumantic*
MrubyUbuntuoracular*
MrubyUbuntuplucky*
MrubyUbuntutrusty*
MrubyUbuntuxenial*
Nghttp2Ubuntubionic*
Nghttp2Ubuntuimpish*
Nghttp2Ubuntutrusty*
Nghttp2Ubuntuxenial*

Potential Mitigations

References