PT-2020-14728 · Lua+1 · Lua+1

Roberto-Ieru

·

Published

2020-07-24

·

Updated

2025-08-03

·

CVE-2020-15945

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Lua versions prior to 5.4.1
Description The issue is related to a segmentation fault in the changedline function in ldebug.c, which can be triggered when luaG traceexec is called. This occurs because the code incorrectly assumes that the oldpc value is always updated when the flow of control returns to a function.
Recommendations For Lua versions prior to 5.4.1, update to version 5.4.1 or later to resolve the issue.

Exploit

Fix

Buffer Overflow

Weakness Enumeration

Related Identifiers

AZL-40818
AZL-6671
BDU:2025-08605
BIT-LUA-2020-15945
CVE-2020-15945
OPENSUSE-SU-2024:11029-1
OPENSUSE-SU-2025:15401-1
ROSA-SA-2025-2620

Affected Products

Lua
Red Os