5.5
CVSSv3

CVE-2021-43519

Published: 09/11/2021 Updated: 07/11/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 5.5 | Impact Score: 3.6 | Exploitability Score: 1.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P

Vulnerability Summary

Stack overflow in lua_resume of ldo.c in Lua Interpreter 5.1.0~5.4.4 allows malicious users to perform a Denial of Service via a crafted script file.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

lua lua

fedoraproject fedora 35

Vendor Advisories

Debian Bug report logs - #1000228 lua54: CVE-2021-43519 Package: src:lua54; Maintainer for src:lua54 is Debian Lua Team <pkg-lua-devel@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Fri, 19 Nov 2021 22:30:02 UTC Severity: important Tags: security, upstream Found in version l ...
Synopsis Moderate: lua security update Type/Severity Security Advisory: Moderate Red Hat Insights patch analysis Identify and remediate systems affected by this advisory View affected systems Topic An update for lua is now available for Red Hat Enterprise Linux 90 Extended Update SupportRed Hat Product Security has rated this upd ...
Synopsis Important: Red Hat OpenShift Data Foundation 4130 security and bug fix update Type/Severity Security Advisory: Important Topic Updated images that include numerous enhancements, security, and bug fixes are now available in Red Hat Container Registry for Red Hat OpenShift Data Foundation 4130 on Red Hat Enterprise Linux 9Red Hat ...
A stack overflow in lua_resume of ldoc in the Lua Interpreter, versions 510 to 544, allows attackers to perform a denial of service via a crafted script file ...
A stack overflow issue was discovered in Lua in the lua_resume() function of ldoc This flaw allows a local attacker to pass a specially crafted file to the Lua Interpreter, causing a crash that leads to a denial of service (CVE-2021-43519) A flaw was found in Lua An SEGV crash in the funcnamefromcode() function in ldebugc during error handling ...
A stack overflow issue was discovered in Lua in the lua_resume() function of ldoc This flaw allows a local attacker to pass a specially crafted file to the Lua Interpreter, causing a crash that leads to a denial of service (CVE-2021-43519) A flaw was found in Lua An SEGV crash in the funcnamefromcode() function in ldebugc during error handling ...