CVE-2020-36401

HIGH

Mruby - Double Free

Title source: rule

Description

mruby 2.1.2 has a double free in mrb_default_allocf (called from mrb_free and obj_free).

Scores

CVSS v3 7.8
EPSS 0.0024
EPSS Percentile 47.2%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-415
Status published

Affected Products (1)

mruby/mruby

Timeline

Published Jul 01, 2021
Tracked Since Feb 18, 2026