Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2019-3706

Опубликовано: 14 нояб. 2019
Источник: oracle-oval
Платформа: Oracle Linux 8

Описание

ELSA-2019-3706: lua security and bug fix update (MODERATE)

[5.3.4-11]

  • Fix use after free in lua_upvaluejoin (#1670167)

Обновленные пакеты

Oracle Linux 8

Oracle Linux aarch64

lua

5.3.4-11.el8

lua-devel

5.3.4-11.el8

lua-libs

5.3.4-11.el8

Oracle Linux x86_64

lua

5.3.4-11.el8

lua-devel

5.3.4-11.el8

lua-libs

5.3.4-11.el8

Связанные CVE

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attacker who is able to trigger a debug.upvaluejoin call in which the arguments have certain relationships.

CVSS3: 7.5
redhat
почти 7 лет назад

Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attacker who is able to trigger a debug.upvaluejoin call in which the arguments have certain relationships.

CVSS3: 7.5
nvd
почти 7 лет назад

Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example, a crash outcome might be achieved by an attacker who is able to trigger a debug.upvaluejoin call in which the arguments have certain relationships.

CVSS3: 7.5
msrc
около 5 лет назад

Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For example a crash outcome might be achieved by an attacker who is able to trigger a debug.upvaluejoin call in which the arguments have certain relationships.

CVSS3: 7.5
debian
почти 7 лет назад

Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For examp ...