CVE-2022-4996
MEDIUM
5,5
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Confidentiality: N/A
Integrity: N/A
Availability: N/A
MEDIUM
5,3
Source: [email protected]
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: low
MEDIUM
5,0
Source: [email protected]
Access Vector: network
Access Complexity: low
Authentication: none
Confidentiality: none
Integrity: none
Availability: partial
Description
AI Translation Available
A flaw has been found in mruby 3.1.0. Affected is the function udiv of the file bigint.c. Executing a manipulation can lead to floating point comparison with incorrect operator. It is possible to launch the attack remotely. The exploit has been published and may be used. It is best practice to apply a patch to resolve this issue.
1077
Floating Point Comparison with Incorrect Operator
IncompleteCommon Consequences
Security Scopes Affected:
Other
Potential Impacts:
Reduce Reliability
Applicable Platforms
All platforms may be affected
https://huntr.com/bounties/5a5092df-1699-4497-a8b2-38318bce0c4e
https://vuldb.com/cve/CVE-2022-4996
https://vuldb.com/submit/877513
https://vuldb.com/vuln/391391
https://vuldb.com/vuln/391391/cti