ELA-879-1 lua5.3 security update

Use after free

2023-06-26
Packagelua5.3
Version5.3.3-1+deb9u2 (stretch)
Related CVEs CVE-2019-6706


A use after free was found in lua 5.3. A crash might be triggered by a debug.upvaluejoin call with specially crafted parameters.



For Debian 9 stretch, these problems have been fixed in version 5.3.3-1+deb9u2.

We recommend that you upgrade your lua5.3 packages.

Further information about Extended LTS security advisories can be found in the dedicated section of our website.