CVE-2022-33099: Buffer Overflow
An issue in the component luaGrunerror of Lua v5.4.4 and below leads to a heap-buffer overflow when a recursive error occurs.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID is CVE-2022-33099.
What is the severity level of CVE-2022-33099?
The severity level of CVE-2022-33099 is high, with a CVSS score of 7.5.
Which software versions are affected by CVE-2022-33099?
CVE-2022-33099 affects Lua v5.4.4 and below.
How does CVE-2022-33099 impact the affected software?
CVE-2022-33099 leads to a heap-buffer overflow when a recursive error occurs.
Are there any references related to CVE-2022-33099?
Yes, you can find references related to CVE-2022-33099 at the following links: [link1](https://github.com/lua/lua/commit/42d40581dd919fb134c07027ca1ce0844c670daf), [link2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RJNJ66IFDUKWJJZXHGOLRGIA3HWWC36R/), [link3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/UHYZOEFDVLVAD6EEP4CDW6DNONIVVHPA/)