[ALSA-2023:0957] Moderate: lua security update
Type:
security
Severity:
moderate
Release date:
2023-02-28
Description:
The lua packages provide support for Lua, a powerful light-weight programming language designed for extending applications. Lua is also frequently used as a general-purpose, stand-alone language. Security Fix(es): * lua: use after free allows Sandbox Escape (CVE-2021-44964) * lua: stack overflow in lua_resume of ldo.c allows a DoS via a crafted script file (CVE-2021-43519) For more details about the security issue(s), including the impact, a CVSS score, acknowledgments, and other related information, refer to the CVE page(s) listed in the References section.
Updated packages listed below:
Architecture Package Checksum
aarch64 lua-5.4.4-2.el9_1.aarch64.rpm 758db85420cae2b6e81e46e45ba64ac48f32d7b052e5b2eeea37f006d49b5cf3
aarch64 lua-libs-5.4.4-2.el9_1.aarch64.rpm ade4d560be7a2e2f35fc42dccaafca3b7d2cadcddb65ffb70e9506dc56432215
aarch64 lua-devel-5.4.4-2.el9_1.aarch64.rpm af247c7fabfb4e334a00aceeb15bbbd25bf098229a5516137aa685389c21dc36
i686 lua-devel-5.4.4-2.el9_1.i686.rpm 59c49c501957b55292a6d36e4541189f75730ade61f0747176d2972b707cac1f
i686 lua-libs-5.4.4-2.el9_1.i686.rpm 9383e10ccde5ee9c72d2603155524e3543d8560a66cf4971e164c8eea83a6dba
i686 lua-5.4.4-2.el9_1.i686.rpm e83d2a7d88cad76ecc06783ae71567d141942b00ae9ae766cf42b8a37a904064
ppc64le lua-libs-5.4.4-2.el9_1.ppc64le.rpm 4cc9653e254e588970e590822923827d2192e96f2e105b9551da49d1f5599032
ppc64le lua-devel-5.4.4-2.el9_1.ppc64le.rpm d0bac51b7377436446961053eb659cef2ae118f4e33d4dd5125fea636069f6e9
ppc64le lua-5.4.4-2.el9_1.ppc64le.rpm fa94ea4bbbb644d477d812865993725efcf9e9d6adbb268686418643abf6afaa
s390x lua-5.4.4-2.el9_1.s390x.rpm 75873bc393179499368c6903dd5cb348033e6164ed593c4296bbf4d09f982272
s390x lua-libs-5.4.4-2.el9_1.s390x.rpm b8d6204418b7be5598f404fc8d0be95200b30f296791d65b5d1e2d2a23b0c0e3
s390x lua-devel-5.4.4-2.el9_1.s390x.rpm c6aac2924d189ae1683780d573383cb1c82d81569194447c7959f861693b60e0
x86_64 lua-5.4.4-2.el9_1.x86_64.rpm 049fc03358600131efb412e6797afa1caf91c261f6373269230e4243359e3bbd
x86_64 lua-devel-5.4.4-2.el9_1.x86_64.rpm 650ef0544090a272d132c3b1e538610a07381af7d509543bc058b3fd255a7731
x86_64 lua-libs-5.4.4-2.el9_1.x86_64.rpm 8ebeb663600a8ec6f8cd9dd4418844377c1e611eb4db6278c58f245806a2e5b7
Notes:
This page is generated automatically from Red Hat security data and has not been checked for errors. For clarification or corrections please contact the AlmaLinux Packaging Team.