CVE-2020-15889 PUBLISHED

Lua 5.4.0 has a getobjname heap-based buffer over-read because youngcollection in lgc.c uses markold for an insufficient number of list members.

EPSS 0.51% · 66.2th percentile

Risk Scores

EPSS Score
0.51%
66.2th percentile

Affected Products

VendorProductVersions
Bitnamilua5.4.0
Bitnamilua5.4.0

Timeline

References

Open in Interactive Console →