CVE-2020-24370
17.08.2020, 17:15
ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).
| Vendor | Product | Version |
|---|---|---|
| lua | lua | 5.2.0 |
| lua | lua | 5.2.0:alpha |
| lua | lua | 5.2.0:beta |
| lua | lua | 5.2.1 |
| lua | lua | 5.2.2 |
| lua | lua | 5.2.3 |
| lua | lua | 5.3.0 |
| lua | lua | 5.3.0:alpha |
| lua | lua | 5.3.0:beta |
| lua | lua | 5.3.1 |
| lua | lua | 5.3.2 |
| lua | lua | 5.3.3 |
| lua | lua | 5.3.4 |
| lua | lua | 5.3.5 |
| lua | lua | 5.4.0 |
| lua | lua | 5.4.0:alpha |
| lua | lua | 5.4.0:beta |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| lua5.1 |
| ||||||||||||||||
| lua5.2 |
| ||||||||||||||||
| lua5.3 |
| ||||||||||||||||
| lua5.4 |
| ||||||||||||||||
| lua50 |
|
Common Weakness Enumeration
References