CVE-2020-24342 PUBLISHED

Lua through 5.4.0 allows a stack redzone cross in luaO_pushvfstring because a protection mechanism wrongly calls luaD_callnoyield twice in a row.

EPSS 0.31% · 53.7th percentile

Risk Scores

EPSS Score
0.31%
53.7th percentile

Affected Products

VendorProductVersions
Bitnamilua5.4.0
Bitnamilua5.4.0

Timeline

References

Open in Interactive Console →