CNNVD-202507-1243 Information

CNNVD ID

CNNVD-202507-1243

CVE-2025-7207

  • CNNVD Published: 2025-07-08

Description (Chinese)

mruby是一款Ruby语言的轻量级实现。 mruby 3.4.0-rc2及之前版本存在安全漏洞,该漏洞源于scope_new函数存在堆缓冲区溢出。

Description (English)

Mruby is a lightweight language of Ruby. There is a security loophole in the mruby 3.4.0-rc2 and earlier versions, which stems from the proliferation of buffer zones in the scope new function.

Hazard Level

Critical

Vulnerability Type

其他

Published

2025-07-08

Last Modified

2026-02-24

References

https://nvd.nist.gov/vuln/detail/CVE-2025-7207

Patch

https://github.com/mruby/mruby/tags

Share on: