Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2014-5461

Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial of service (crash) via a small number of arguments to a function with a large number of fixed arguments.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.101
EPSS Ranking 92.7%
CVSS Severity
CVSS v2 Score 5.0
References
Products affected by CVE-2014-5461
  • Lua » Lua » Version: 5.1
    cpe:2.3:a:lua:lua:5.1
  • Lua » Lua » Version: 5.1.1
    cpe:2.3:a:lua:lua:5.1.1
  • Lua » Lua » Version: 5.1.2
    cpe:2.3:a:lua:lua:5.1.2
  • Lua » Lua » Version: 5.1.3
    cpe:2.3:a:lua:lua:5.1.3
  • Lua » Lua » Version: 5.1.4
    cpe:2.3:a:lua:lua:5.1.4
  • Lua » Lua » Version: 5.1.5
    cpe:2.3:a:lua:lua:5.1.5
  • Lua » Lua » Version: 5.2.0
    cpe:2.3:a:lua:lua:5.2.0
  • Lua » Lua » Version: 5.2.1
    cpe:2.3:a:lua:lua:5.2.1
  • Lua » Lua » Version: 5.2.2
    cpe:2.3:a:lua:lua:5.2.2
  • Canonical » Ubuntu Linux » Version: 12.04
    cpe:2.3:o:canonical:ubuntu_linux:12.04
  • Canonical » Ubuntu Linux » Version: 14.04
    cpe:2.3:o:canonical:ubuntu_linux:14.04
  • Debian » Debian Linux » Version: 7.0
    cpe:2.3:o:debian:debian_linux:7.0
  • Mageia » Mageia » Version: 3.0
    cpe:2.3:o:mageia:mageia:3.0
  • Mageia » Mageia » Version: 4.0
    cpe:2.3:o:mageia:mageia:4.0
  • Opensuse » Opensuse » Version: 12.3
    cpe:2.3:o:opensuse:opensuse:12.3
  • Opensuse » Opensuse » Version: 13.1
    cpe:2.3:o:opensuse:opensuse:13.1


Contact Us

Shodan ® - All rights reserved