CVE-2014-5461
04.09.2014, 17:55
Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial of service (crash) via a small number of arguments to a function with a large number of fixed arguments.Enginsight
| Vendor | Product | Version |
|---|---|---|
| opensuse | opensuse | 12.3 |
| opensuse | opensuse | 13.1 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| debian | debian_linux | 7.0 |
| lua | lua | 5.1 |
| lua | lua | 5.1.1 |
| lua | lua | 5.1.2 |
| lua | lua | 5.1.3 |
| lua | lua | 5.1.4 |
| lua | lua | 5.1.5 |
| lua | lua | 5.2.0 |
| lua | lua | 5.2.1 |
| lua | lua | 5.2.2 |
| mageia | mageia | 3.0 |
| mageia | mageia | 4.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| lua5.1 |
| ||||||||||||||||||
| lua5.2 |
| ||||||||||||||||||
| lua50 |
|
Common Weakness Enumeration
References