Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

rocky логотип

RLSA-2021:4510

Опубликовано: 09 нояб. 2021
Источник: rocky
Оценка: Low

Описание

Low: lua security update

The lua packages provide support for Lua, a powerful light-weight programming language designed for extending applications. Lua is also frequently used as a general-purpose, stand-alone language.

Security Fix(es):

  • lua: segmentation fault in getlocal and setlocal functions in ldebug.c (CVE-2020-24370)

For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.

Additional Changes:

For detailed information on changes in this release, see the Rocky Linux 8.5 Release Notes linked from the References section.

Затронутые продукты

  • Rocky Linux 8

НаименованиеАрхитектураРелизRPM
lua-libsx86_6412.el8lua-libs-5.3.4-12.el8.x86_64.rpm

Показывать по

Связанные CVE

Исправления

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 5 лет назад

ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).

CVSS3: 5.3
redhat
почти 5 лет назад

ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).

CVSS3: 5.3
nvd
почти 5 лет назад

ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).

CVSS3: 5.3
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 5.3
debian
почти 5 лет назад

ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation faul ...