CVE-2020-15888 PUBLISHED

Lua through 5.4.0 mishandles the interaction between stack resizes and garbage collection, leading to a heap-based buffer overflow, heap-based buffer over-read, or use-after-free.

EPSS 1.25% · 79.2th percentile

Risk Scores

EPSS Score
1.25%
79.2th percentile

Affected Products

VendorProductVersions
Bitnamilua5.4.0
Bitnamilua5.4.0

Timeline

References

Open in Interactive Console →