Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-25178


LuaJIT through 2.1 and OpenRusty luajit2 before v2.1-20240314 have an out-of-bounds read in the stack-overflow handler in lj_state.c.


Published

2025-07-07T17:15:27.527

Last Modified

2025-07-24T16:15:30.580

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 9.1 (CRITICAL)

Weaknesses
  • Type: Secondary
    CWE-125

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application luajit luajit ≤ 2.1.0 Yes

References