openwrt ▾
›
master ▾
›
vulnerability
›
CVE-2020-15945
Component Overview
Vulnerability Overview
Name
CVE-2020-15945
Source
NVD (
link
)
Debian (
link
)
Description
Lua 5.4.0 (fixed in 5.4.1) has a segmentation fault in changedline in ldebug.c (e.g., when called by luaG_traceexec) because it incorrectly expects that an oldpc value is always updated upon a return of the flow of control to a function.
CWEs
Published Date
Jul 24, 2020
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://lua-users.org/lists/lua-l/2020-07/msg00123.html
Exploit
https://github.com/lua/lua/commit/a2195644d89812e5b157ce7bac35543e06db05e3
Patch
http://lua-users.org/lists/lua-l/2020-07/msg00123.html
Exploit
https://github.com/lua/lua/commit/a2195644d89812e5b157ce7bac35543e06db05e3
Patch
Analysis
#
Affected Component
Analysis
lua5.3
Exploitable
Vulnerability Ratings
#
5.5
CVSSv31
2.1
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
lua
buildroot
2025.02.x
5.1.5
Not Affected
lua
buildroot
master
5.1.5
Not Affected
lua
openwrt
openwrt-25.12
5.1.5-r11
Not Affected
lua5.3
openwrt
openwrt-25.12
5.3.5-r6
Exploitable
lua5.4
openwrt
openwrt-25.12
5.4.7-r1
Not Affected
lua
yocto
kirkstone
5.4.4
Not Affected
lua
yocto
master
5.5.0
Not Affected
lua
yocto
scarthgap
5.4.6
Not Affected