Candidate: CVE-2020-24370 PublicDate: 2020-08-17 17:15:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2020-24370 http://lua-users.org/lists/lua-l/2020-07/msg00324.html https://github.com/lua/lua/commit/a585eae6e7ada1ca9271607a4f48dfb17868ab7b Description: ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31). Ubuntu-Description: Notes: Mitigation: Bugs: Priority: medium Discovered-by: Assigned-to: CVSS: nvd: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L [5.3 MEDIUM] Patches_lua50: upstream_lua50: needs-triage precise/esm_lua50: DNE trusty_lua50: ignored (out of standard support) trusty/esm_lua50: DNE xenial_lua50: not-affected (code not present) bionic_lua50: not-affected (code not present) focal_lua50: not-affected (code not present) groovy_lua50: not-affected (code not present) hirsute_lua50: not-affected (code not present) impish_lua50: not-affected (code not present) jammy_lua50: DNE devel_lua50: DNE Patches_lua5.1: upstream_lua5.1: needs-triage precise/esm_lua5.1: not-affected (code not present) trusty_lua5.1: ignored (out of standard support) trusty/esm_lua5.1: not-affected (code not present) xenial_lua5.1: not-affected (code not present) esm-infra/xenial_lua5.1: not-affected (code not present) bionic_lua5.1: not-affected (code not present) focal_lua5.1: not-affected (code not present) groovy_lua5.1: not-affected (code not present) hirsute_lua5.1: not-affected (code not present) impish_lua5.1: not-affected (code not present) jammy_lua5.1: not-affected (code not present) devel_lua5.1: not-affected (code not present) Patches_lua5.2: upstream_lua5.2: needs-triage precise/esm_lua5.2: DNE trusty_lua5.2: ignored (out of standard support) trusty/esm_lua5.2: not-affected (code not present) xenial_lua5.2: not-affected (code not present) esm-infra/xenial_lua5.2: not-affected (code not present) bionic_lua5.2: not-affected (code not present) focal_lua5.2: not-affected (code not present) groovy_lua5.2: not-affected (code not present) hirsute_lua5.2: not-affected (code not present) impish_lua5.2: not-affected (code not present) jammy_lua5.2: not-affected (code not present) devel_lua5.2: not-affected (code not present) Patches_lua5.3: upstream_lua5.3: needs-triage precise/esm_lua5.3: DNE trusty_lua5.3: ignored (out of standard support) trusty/esm_lua5.3: DNE xenial_lua5.3: not-affected (code not present) esm-infra/xenial_lua5.3: not-affected (code not present) bionic_lua5.3: not-affected (code not present) focal_lua5.3: not-affected (code not present) groovy_lua5.3: not-affected (code not present) hirsute_lua5.3: not-affected (code not present) impish_lua5.3: not-affected (code not present) jammy_lua5.3: not-affected (code not present) devel_lua5.3: not-affected (code not present) Patches_lua5.4: upstream_lua5.4: needs-triage precise/esm_lua5.4: DNE trusty_lua5.4: ignored (out of standard support) trusty/esm_lua5.4: DNE xenial_lua5.4: DNE bionic_lua5.4: DNE focal_lua5.4: DNE groovy_lua5.4: ignored (reached end-of-life) hirsute_lua5.4: not-affected (5.4.1-1) impish_lua5.4: not-affected (5.4.1-1) jammy_lua5.4: not-affected (5.4.1-1) devel_lua5.4: not-affected (5.4.1-1)