PT-2025-28211 · Luajit+2 · Luajit+2

Published

2025-07-07

·

Updated

2025-09-26

·

CVE-2024-25177

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions LuaJIT versions through 2.1
Description LuaJIT is susceptible to a denial-of-service (DoS) condition due to an unsinking of IR FSTORE for a NULL metatable.
Recommendations Update LuaJIT to a version later than 2.1.

Exploit

Fix

DoS

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

AZL-65535
CVE-2024-25177
DLA-4283-1
ECHO-5AA6-43EF-61BB
SUSE-SU-2025:02886-1
SUSE-SU-2025:03378-1
SUSE-SU-2025_03378-1

Affected Products

Debian
Luajit
Suse