Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-44647

Опубликовано: 11 янв. 2022
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

Lua v5.4.3 and above are affected by SEGV by type confusion in funcnamefromcode function in ldebug.c which can cause a local denial of service.

A flaw was found in Lua. An SEGV crash in the funcnamefromcode() function in ldebug.c during error handling occurs in '__close' metamethods. This flaw allows an attacker to cause a denial of service.

Отчет

This vulnerability affects Lua v5.4.3 and above which we do not ship in any of our products.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6luaNot affected
Red Hat Enterprise Linux 7luaNot affected
Red Hat Enterprise Linux 8libreoffice:flatpak/luaNot affected
Red Hat Enterprise Linux 8luaNot affected
Red Hat Enterprise Linux 9luaNot affected
Red Hat JBoss Core ServicesluaNot affected

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-843
https://bugzilla.redhat.com/show_bug.cgi?id=2044415lua: type confusion in funcnamefromcode in ldebug.c could result in local DoS

EPSS

Процентиль: 6%
0.00023
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 4 лет назад

Lua v5.4.3 and above are affected by SEGV by type confusion in funcnamefromcode function in ldebug.c which can cause a local denial of service.

CVSS3: 5.5
nvd
около 4 лет назад

Lua v5.4.3 and above are affected by SEGV by type confusion in funcnamefromcode function in ldebug.c which can cause a local denial of service.

CVSS3: 5.5
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 5.5
debian
около 4 лет назад

Lua v5.4.3 and above are affected by SEGV by type confusion in funcnam ...

CVSS3: 5.5
github
около 4 лет назад

Lua 5.4.4 and 5.4.2 are affected by SEGV by type confusion in funcnamefromcode function in ldebug.c which can cause a local denial of service.

EPSS

Процентиль: 6%
0.00023
Низкий

5.5 Medium

CVSS3