PT-2025-27561 · Git+1 · Tarantool

Published

2025-04-02

·

Updated

2025-04-02

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Lua (affected versions not specified)
Description The Lua interpreter suffers from a heap-use-after-free issue. The crash state indicates the issue occurs within the lj strfmt pushvf, lua pushfstring, and luaL loadfilex functions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

OSV-2025-249

Affected Products

Tarantool