Product:

Luajit

(Luajit)
Repositories

Unknown:

This might be proprietary software.

#Vulnerabilities 3
Date Id Summary Products Score Patch Annotated
2019-11-29 CVE-2019-19391 In LuaJIT through 2.0.5, as used in Moonjit before 2.1.2 and other products, debug.getinfo has a type confusion issue that leads to arbitrary memory write or read operations, because certain cases involving valid stack levels and > options are mishandled. NOTE: The LuaJIT project owner states that the debug libary is unsafe by definition and that this is not a vulnerability. When LuaJIT was originally developed, the expectation was that the entire debug library had no security guarantees and... Luajit, Moonjit 9.1
2020-07-21 CVE-2020-15890 LuaJit through 2.1.0-beta3 has an out-of-bounds read because __gc handler frame traversal is mishandled. Ubuntu_linux, Debian_linux, Luajit 7.5
2020-08-17 CVE-2020-24372 LuaJIT through 2.1.0-beta3 has an out-of-bounds read in lj_err_run in lj_err.c. Luajit N/A