PT-2025-47462 · Mrubyc · Mrubyc

Micromilo

·

Published

2025-11-19

·

Updated

2025-12-01

·

CVE-2025-13397

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions mrubyc versions prior to 3.4
Description A security issue exists in mrubyc. The mrbc raw realloc function within the src/alloc.c file is susceptible to a null pointer dereference when the ptr argument is manipulated. This requires local access to exploit.
Recommendations Implement the patch 009111904807b8567262036bf45297c3da8f1c87 to correct this issue.

Fix

Improper Resource Release

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

CVE-2025-13397

Affected Products

Mrubyc