[Git][security-tracker-team/security-tracker][master] CVE-2022-28805 specific to Lua 5.4

Moritz Muehlenhoff (@jmm) jmm at debian.org
Fri Apr 29 16:22:11 BST 2022



Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker


Commits:
5ba3b834 by Moritz Mühlenhoff at 2022-04-29T17:20:10+02:00
CVE-2022-28805 specific to Lua 5.4

- - - - -


1 changed file:

- data/CVE/list


Changes:

=====================================
data/CVE/list
=====================================
@@ -3009,10 +3009,13 @@ CVE-2022-28806
 CVE-2022-28805 (singlevar in lparser.c in Lua through 5.4.4 lacks a certain luaK_exp2a ...)
 	- lua5.4 <unfixed> (bug #1010265)
 	[bullseye] - lua5.4 <no-dsa> (Minor issue)
+	- lua5.3 <not-affected> (Specific to 5.4, see #1010265)
+	- lua5.2 <not-affected> (Specific to 5.4, see #1010265)
+	- lua5.1 <not-affected> (Specific to 5.4, see #1010265)
+	- lua50 <not-affected> (Specific to 5.4, see #1010265)
 	NOTE: https://github.com/lua/lua/commit/1f3c6f4534c6411313361697d98d1145a1f030fa
 	NOTE: http://lua-users.org/lists/lua-l/2022-02/msg00001.html
 	NOTE: http://lua-users.org/lists/lua-l/2022-02/msg00070.html
-	TODO: check older lua branches
 CVE-2022-28804
 	RESERVED
 CVE-2022-28803



View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5ba3b83441f3648df60f79a42700310dc0fbdea7

-- 
View it on GitLab: https://salsa.debian.org/security-tracker-team/security-tracker/-/commit/5ba3b83441f3648df60f79a42700310dc0fbdea7
You're receiving this email because of your account on salsa.debian.org.


-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/debian-security-tracker-commits/attachments/20220429/adbf9795/attachment-0001.htm>


More information about the debian-security-tracker-commits mailing list