Описание
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
lua5.4 | fixed | 5.4.4-3 | package | |
lua5.4 | no-dsa | bullseye | package | |
lua5.3 | not-affected | package | ||
lua5.2 | not-affected | package | ||
lua5.1 | not-affected | package | ||
lua50 | not-affected | package |
Примечания
https://github.com/lua/lua/commit/42d40581dd919fb134c07027ca1ce0844c670daf
https://lua-users.org/lists/lua-l/2022-05/msg00035.html
https://lua-users.org/lists/lua-l/2022-05/msg00042.html
https://lua-users.org/lists/lua-l/2022-05/msg00073.html
EPSS
Связанные уязвимости
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
EPSS