CVE-2022-28805 | Lua up to 5.4.4 lparser.c singlevar heap-based overflow (EUVD-2022-33243 / WID-SEC-2023-1185)
A vulnerability was found in Lua up to 5.4.4 and classified as critical. Affected is the function singlevar of the file lparser.c. Executing a manipulation can lead to heap-based buffer overflow.
This vulnerability is registered as CVE-2022-28805. It is possible to launch the attack remotely. No exploit is available.