PT-2025-46841 · Debian · Debian

Tjbecker

·

Published

2025-11-13

·

Updated

2025-11-13

·

CVE-2025-13120

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions mruby versions prior to 3.4.0
Description A use after free issue exists in the sort cmp() function within the src/array.c file. This flaw requires local access to be exploited.
Recommendations Apply patch eb398971bfb43c38db3e04528b68ac9a7ce509bc to resolve the issue. As a temporary workaround, consider restricting the use of the sort cmp() function.

Exploit

Fix

Buffer Overflow

Use After Free

Weakness Enumeration

Related Identifiers

CVE-2025-13120

Affected Products

Debian