Alerts This Week
Warning Icon 1 540
Alerts This Week
Warning Icon 1 540

openSUSE Leap 15.6: lua51-luajit Low Vulnerability 2025:02886-1

opensuse
Calendar Grey August 19, 2025
Dist Opensuse Esm H88
An essential patch for Fedora resolves various security flaws in python3-django, improving overall performance.
An update that solves three vulnerabilities can now be installed.

Description

This update for lua51-luajit fixes the following issues:

* CVE-2024-25176: Fixed stack-buffer-overflow in lj_strfmt_wfnum in

lj_strfmt_num.c (bsc#1246077)

* CVE-2024-25177: Fixed unsinking of IR_FSTORE for NULL metatable

(bsc#1246078)

* CVE-2024-25178: Fixed ut-of-bounds read in the stack-overflow handler in

lj_state.c (bsc#1246079)

Patch

## Patch Instructions:

To install this SUSE update use the SUSE recommended installation methods like

YaST online_update or "zypper patch".

Alternatively you can run the command listed for your product:

* openSUSE Leap 15.6

zypper in -t patch openSUSE-SLE-15.6-2025-2886=1

Package List

* openSUSE Leap 15.6 (aarch64 x86_64)

* lua51-luajit-devel-2.1.0~beta2-150000.3.3.1

* lua51-luajit-2.1.0~beta2-150000.3.3.1

* lua51-luajit-debuginfo-2.1.0~beta2-150000.3.3.1

* lua51-luajit-debugsource-2.1.0~beta2-150000.3.3.1

References

* bsc#1246077

* bsc#1246078

* bsc#1246079

## References:

* https://www.suse.com/security/cve/CVE-2024-25176.html

* https://www.suse.com/security/cve/CVE-2024-25177.html

* https://www.suse.com/security/cve/CVE-2024-25178.html

* https://bugzilla.suse.com/show_bug.cgi?id=1246077

* https://bugzilla.suse.com/show_bug.cgi?id=1246078

* https://bugzilla.suse.com/show_bug.cgi?id=1246079

Severity
low
Lowest
Low
Medium
High
Critical

Announcement ID: SUSE-SU-2025:02886-1
Release Date: 2025-08-19T07:08:40Z
Affected Products: * openSUSE Leap 15.6

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Related News

Your message here