Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-15945

Опубликовано: 24 июл. 2020
Источник: debian
EPSS Низкий

Описание

Lua 5.4.0 (fixed in 5.4.1) has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a return of the flow of control to a function.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lua5.4fixed5.4.1-1package
lua5.3not-affectedpackage
lua5.2not-affectedpackage
lua5.1not-affectedpackage
lua50not-affectedpackage

Примечания

  • https://github.com/lua/lua/commit/a2195644d89812e5b157ce7bac35543e06db05e3 (v5.4.1)

  • http://lua-users.org/lists/lua-l/2020-07/msg00123.html

EPSS

Процентиль: 31%
0.00115
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 5 лет назад

Lua 5.4.0 (fixed in 5.4.1) has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a return of the flow of control to a function.

CVSS3: 5.5
redhat
около 5 лет назад

Lua 5.4.0 (fixed in 5.4.1) has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a return of the flow of control to a function.

CVSS3: 5.5
nvd
около 5 лет назад

Lua 5.4.0 (fixed in 5.4.1) has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a return of the flow of control to a function.

CVSS3: 5.5
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 5.5
redos
3 месяца назад

Уязвимость lua

EPSS

Процентиль: 31%
0.00115
Низкий