openwrt ▾
›
master ▾
›
vulnerability
›
CVE-2021-43519
Component Overview
Vulnerability Overview
Name
CVE-2021-43519
Source
NVD (
link
)
Debian (
link
)
Description
Stack overflow in lua_resume of ldo.c in Lua Interpreter 5.1.0~5.4.4 allows attackers to perform a Denial of Service via a crafted script file.
CWEs
CWE-674
Published Date
Nov 9, 2021
Updated Date
Jun 17, 2026
Workaround
-
Advisories
http://lua-users.org/lists/lua-l/2021-10/msg00123.html
Exploit
http://lua-users.org/lists/lua-l/2021-11/msg00015.html
Patch
http://lua-users.org/lists/lua-l/2021-10/msg00123.html
Exploit
http://lua-users.org/lists/lua-l/2021-11/msg00015.html
Patch
Analysis
#
Affected Component
Analysis
lua
Exploitable
Vulnerability Ratings
#
5.5
CVSSv31
4.3
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
lua
buildroot
2025.02.x
5.1.5
Exploitable
lua
buildroot
master
5.1.5
Exploitable
lua
openwrt
openwrt-25.12
5.1.5-r11
Exploitable
lua5.3
openwrt
openwrt-25.12
5.3.5-r6
Not Affected
lua5.4
openwrt
openwrt-25.12
5.4.7-r1
Not Affected
lua
yocto
kirkstone
5.4.4
Not Affected
lua
yocto
master
5.5.0
Not Affected
lua
yocto
scarthgap
5.4.6
Not Affected