Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

oracle-oval логотип

ELSA-2023-2582

Опубликовано: 15 мая 2023
Источник: oracle-oval
Платформа: Oracle Linux 9

Описание

ELSA-2023-2582: lua security update (LOW)

[5.4.4-3]

  • Apply upstream patch for CVE-2022-28805

Обновленные пакеты

Oracle Linux 9

Oracle Linux aarch64

lua

5.4.4-3.el9

lua-devel

5.4.4-3.el9

lua-libs

5.4.4-3.el9

Oracle Linux x86_64

lua

5.4.4-3.el9

lua-devel

5.4.4-3.el9

lua-libs

5.4.4-3.el9

Связанные CVE

Связанные уязвимости

CVSS3: 9.1
ubuntu
больше 3 лет назад

singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) 5.4.4 lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compiles untrusted Lua code.

CVSS3: 6.2
redhat
больше 3 лет назад

singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) 5.4.4 lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compiles untrusted Lua code.

CVSS3: 9.1
nvd
больше 3 лет назад

singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) 5.4.4 lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compiles untrusted Lua code.

CVSS3: 9.1
msrc
больше 3 лет назад

Описание отсутствует

CVSS3: 9.1
debian
больше 3 лет назад

singlevar in lparser.c in Lua from (including) 5.4.0 up to (excluding) ...