Skip to content

CVE-2014-5461

Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial of service (crash) via a small number of arguments to a function with a large number of fixed arguments.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.1063 (10.6%)
Percentile: 93.3%
EPSS: 2026-05-06

Affects

opensuse:opensusecanonical:ubuntu_linuxdebian:debian_linuxlua:luamageia:mageia

Technical description

Buffer overflow in the vararg functions in ldo.c in Lua 5.1 through 5.2.x before 5.2.3 allows context-dependent attackers to cause a denial of service (crash) via a small number of arguments to a function with a large number of fixed arguments.

Published: 9/4/2014, 5:55:07 PM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam