Vulnerabilities > CVE-2020-24370 - Integer Underflow (Wrap or Wraparound) vulnerability in multiple products

047910
CVSS 5.3 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
LOW
network
low complexity
lua
fedoraproject
debian
CWE-191

Summary

ldebug.c in Lua 5.4.0 allows a negation overflow and segmentation fault in getlocal and setlocal, as demonstrated by getlocal(3,2^31).

Vulnerable Configurations

Part Description Count
Application
Lua
1
OS
Fedoraproject
2
OS
Debian
1

Common Weakness Enumeration (CWE)