CVE-2020-24370
Published Aug 17, 2020
Last updated 2 months ago
Overview
- Description
- ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 5.3
- Impact score
- 1.4
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
- Severity
- MEDIUM
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-191
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:lua:lua:5.2.0:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F41B4A37-B7E5-4405-B5EA-5F1832AF02E7" }, { "criteria": "cpe:2.3:a:lua:lua:5.2.0:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A2191642-D493-4813-87BF-20AD2E63A2AB" }, { "criteria": "cpe:2.3:a:lua:lua:5.2.0:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "D810ACDB-A811-4B70-AA77-E724CD0242B3" }, { "criteria": "cpe:2.3:a:lua:lua:5.2.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "74A8D450-9B86-43DC-93A1-F68E42391948" }, { "criteria": "cpe:2.3:a:lua:lua:5.2.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2293D8C6-2D69-49EF-8BB9-F5222951386B" }, { "criteria": "cpe:2.3:a:lua:lua:5.2.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "25977A23-CF7A-4C39-8F0D-38E958E92F75" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.0:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "6820CE33-926F-477F-A99E-153E88BD5248" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.0:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4D651FE4-77A4-47CC-8EC6-FB8D35A2316F" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.0:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9CBD494F-5C56-4472-9C02-09A14222E024" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "ED403C07-5D1C-4027-9A07-DD7AC4B9442E" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A69EE245-6921-4EC4-B052-558A3BA259E7" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4DE6741D-A69C-4D2E-B5C9-EC44792BA871" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.4:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AE86E188-EB0F-4D54-B1E7-0213C099DAB1" }, { "criteria": "cpe:2.3:a:lua:lua:5.3.5:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B1D6D7F5-0738-45EB-A4F2-9A65F8DD2D0A" }, { "criteria": "cpe:2.3:a:lua:lua:5.4.0:-:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E9F78BF8-B73C-42C6-AF54-2CD935670053" }, { "criteria": "cpe:2.3:a:lua:lua:5.4.0:alpha:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F49EE868-BA14-48D2-9C97-B52E6576EC62" }, { "criteria": "cpe:2.3:a:lua:lua:5.4.0:beta:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C9117B51-57B0-4648-B937-69A6DAC06134" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:fedoraproject:fedora:31:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "80F0FA5D-8D3B-4C0E-81E2-87998286AF33" }, { "criteria": "cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "36D96259-24BD-44E2-96D9-78CE1D41F956" } ], "operator": "OR" } ] }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DEECE5FC-CACF-4496-A3E7-164736409252" } ], "operator": "OR" } ] } ]