Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rvj2-9p3c-wmwh

Опубликовано: 15 мар. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.3

Описание

Use after free in garbage collector and finalizer of lgc.c in Lua interpreter 5.4.0~5.4.3 allows attackers to perform Sandbox Escape via a crafted script file.

Use after free in garbage collector and finalizer of lgc.c in Lua interpreter 5.4.0~5.4.3 allows attackers to perform Sandbox Escape via a crafted script file.

EPSS

Процентиль: 49%
0.00258
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 6.3
ubuntu
около 4 лет назад

Use after free in garbage collector and finalizer of lgc.c in Lua interpreter 5.4.0~5.4.3 allows attackers to perform Sandbox Escape via a crafted script file.

CVSS3: 7
redhat
больше 4 лет назад

Use after free in garbage collector and finalizer of lgc.c in Lua interpreter 5.4.0~5.4.3 allows attackers to perform Sandbox Escape via a crafted script file.

CVSS3: 6.3
nvd
около 4 лет назад

Use after free in garbage collector and finalizer of lgc.c in Lua interpreter 5.4.0~5.4.3 allows attackers to perform Sandbox Escape via a crafted script file.

CVSS3: 6.3
msrc
около 4 лет назад

Описание отсутствует

CVSS3: 6.3
debian
около 4 лет назад

Use after free in garbage collector and finalizer of lgc.c in Lua inte ...

EPSS

Процентиль: 49%
0.00258
Низкий

6.3 Medium

CVSS3

Дефекты

CWE-416