Vulnerabilities > CVE-2018-12249 - NULL Pointer Dereference vulnerability in multiple products

047910
CVSS 5.0 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
PARTIAL
network
low complexity
mruby
debian
CWE-476

Summary

An issue was discovered in mruby 1.4.1. There is a NULL pointer dereference in mrb_class_real because "class BasicObject" is not properly supported in class.c.

Vulnerable Configurations

Part Description Count
Application
Mruby
1
OS
Debian
1

Common Weakness Enumeration (CWE)