Release | Version |
---|---|
stretch | 5.3.3-1 |
stretch (security) | 5.3.3-1+deb9u1 |
buster | 5.3.3-1.1 |
bullseye | 5.3.3-1.1 |
bookworm | 5.3.6-1 |
sid | 5.3.6-1 |
Bug | stretch | buster | bullseye | bookworm | sid | Description |
---|---|---|---|---|---|---|
CVE-2021-43519 | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable (no DSA) | vulnerable | vulnerable | Stack overflow in lua_resume of ldo.c in Lua Interpreter 5.1.0~5.4.4 a ... |
CVE-2020-24370 | fixed | vulnerable (no DSA) | vulnerable (no DSA) | fixed | fixed | ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation faul ... |
CVE-2019-6706 | vulnerable (no DSA, postponed) | vulnerable (no DSA, postponed) | vulnerable (no DSA, postponed) | fixed | fixed | Lua 5.3.5 has a use-after-free in lua_upvaluejoin in lapi.c. For examp ... |
Bug | Description |
---|---|
CVE-2022-28805 | singlevar in lparser.c in Lua through 5.4.4 lacks a certain luaK_exp2a ... |
CVE-2020-24371 | lgc.c in Lua 5.4.0 mishandles the interaction between barriers and the ... |
CVE-2020-15945 | Lua through 5.4.0 has a segmentation fault in changedline in ldebug.c ... |
DSA / DLA | Description |
---|---|
DLA-2381-1 | lua5.3 - security update |