BIT-lua-2020-24370

See a problem?
Import Source
https://github.com/bitnami/vulndb/tree/main/data/lua/BIT-lua-2020-24370.json
JSON Data
https://api.test.osv.dev/v1/vulns/BIT-lua-2020-24370
Aliases
Published
2024-03-06T10:56:50.799Z
Modified
2024-09-10T07:46:00.844Z
Summary
[none]
Details

ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).

Database specific
{
    "cpes": [
        "cpe:2.3:a:lua:lua:5.4.0:-:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.2.0:-:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.2.0:alpha:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.2.0:beta:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.2.1:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.2.2:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.2.3:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.0:-:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.0:alpha:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.0:beta:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.1:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.2:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.3:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.4:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.3.5:*:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.4.0:alpha:*:*:*:*:*:*",
        "cpe:2.3:a:lua:lua:5.4.0:beta:*:*:*:*:*:*"
    ],
    "severity": "Medium"
}
References

Affected packages

Bitnami / lua

Package

Name
lua
Purl
pkg:bitnami/lua

Severity

  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L CVSS Calculator

Affected ranges

Type
SEMVER
Events
Introduced
5.2.0
Last affected
5.2.0
Introduced
5.2.0-alpha
Last affected
5.2.0-alpha
Introduced
5.2.0-beta
Last affected
5.2.0-beta
Introduced
5.2.1
Last affected
5.2.1
Introduced
5.2.2
Last affected
5.2.2
Introduced
5.2.3
Last affected
5.2.3
Introduced
5.3.0
Last affected
5.3.0
Introduced
5.3.0-alpha
Last affected
5.3.0-alpha
Introduced
5.3.0-beta
Last affected
5.3.0-beta
Introduced
5.3.1
Last affected
5.3.1
Introduced
5.3.2
Last affected
5.3.2
Introduced
5.3.3
Last affected
5.3.3
Introduced
5.3.4
Last affected
5.3.4
Introduced
5.3.5
Last affected
5.3.5
Introduced
5.4.0
Last affected
5.4.0
Introduced
5.4.0-alpha
Last affected
5.4.0-alpha
Introduced
5.4.0-beta
Last affected
5.4.0-beta