Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

update: lua #1119

Closed
dongsupark opened this issue Jul 17, 2023 · 1 comment · Fixed by flatcar/scripts#1177
Closed

update: lua #1119

dongsupark opened this issue Jul 17, 2023 · 1 comment · Fixed by flatcar/scripts#1177
Labels
advisory security advisory cvss/HIGH > 7 && < 9 assessed CVSS security security concerns

Comments

@dongsupark
Copy link
Member

Name: lua
CVEs: CVE-2022-33099
CVSSs: 7.5
Action Needed: update to >= 5.4.6

Summary: An issue in the component luaG_runerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.

refmap.gentoo: https://bugs.gentoo.org/856463

@dongsupark dongsupark added security security concerns advisory security advisory cvss/HIGH > 7 && < 9 assessed CVSS labels Jul 17, 2023
@dongsupark dongsupark moved this from 📝 Needs Triage to 🪵Backlog in Flatcar tactical, release planning, and roadmap Jul 17, 2023
@dongsupark dongsupark moved this from 🪵Backlog to 🌱 Upcoming / Focus in Flatcar tactical, release planning, and roadmap Sep 26, 2023
@dongsupark dongsupark moved this from 🌱 Upcoming / Focus to ⚒️ In Progress in Flatcar tactical, release planning, and roadmap Sep 26, 2023
@dongsupark
Copy link
Member Author

will be done in weekly updates flatcar/scripts#1177.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
advisory security advisory cvss/HIGH > 7 && < 9 assessed CVSS security security concerns
Projects
None yet
Development

Successfully merging a pull request may close this issue.

1 participant