Boletines de Vulnerabilidades

DSA-3015 lua5.1 - security update


Información sobre el sistema

   
Software afectado Debian

Descripción

A heap-based overflow vulnerability was found in the way Lua, asimple, extensible, embeddable programming language, handles varargsfunctions with many fixed parameters called with few arguments,leading to application crashes or, potentially, arbitrary codeexecution.

More info:

https://www.debian.org/security/2014/dsa-3015

Identificadores estándar

Propiedad Valor
CVE CVE-2014-5461 and DSA-3015.

Histórico de versiones

Versión Comentario Fecha
1.0 Advisory issued 2014-09-03

Miembros de

Ministerio de Defensa
CNI
CCN
CCN-CERT