Security Advisory
CVE-2020-15866
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
mruby through 2.1.2-rc has a heap-based buffer overflow in the mrb_yield_with_class function in vm.c because of incorrect VM stack handling. It can be triggered via the stack_copy function.