Description
A double free was found in the Regexp compiler in Ruby 3.x before 3.0.4 and 3.1.x before 3.1.2. If a victim attempts to create a Regexp from untrusted user input, an attacker may be able to write to unexpected memory locations.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Ubuntu USN |
USN-5462-1 | Ruby vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-03T06:03:52.623Z
Reserved: 2022-04-06T00:00:00.000Z
Link: CVE-2022-28738
No data.
Status : Modified
Published: 2022-05-09T18:15:08.490
Modified: 2024-11-21T06:57:50.320
Link: CVE-2022-28738
OpenCVE Enrichment
No data.
Weaknesses
Ubuntu USN