Out-of-bounds Read vulnerability in dail8859 NotepadNext (src/lua/src modules). This vulnerability is associated with program files lparser.C.
This issue affects NotepadNext: through v0.11.
The singlevar() in lparser.c lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compiles untrusted Lua code.
Metrics
Affected Vendors & Products
References
History
Mon, 23 Jun 2025 13:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Mon, 23 Jun 2025 09:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | Out-of-bounds Read vulnerability in dail8859 NotepadNext (src/lua/src modules). This vulnerability is associated with program files lparser.C. This issue affects NotepadNext: through v0.11. The singlevar() in lparser.c lacks a certain luaK_exp2anyregup call, leading to a heap-based buffer over-read that might affect a system that compiles untrusted Lua code. | |
Title | Potential heap-based buffer over-read vulnerability in NotepadNext | |
Weaknesses | CWE-125 | |
References |
| |
Metrics |
cvssV4_0
|

Status: PUBLISHED
Assigner: GovTech CSG
Published: 2025-06-23T09:26:39.214Z
Updated: 2025-06-23T12:36:52.166Z
Reserved: 2025-06-23T09:24:36.336Z
Link: CVE-2025-52938

Updated: 2025-06-23T12:36:39.732Z

Status : Received
Published: 2025-06-23T10:15:27.857
Modified: 2025-06-23T10:15:27.857
Link: CVE-2025-52938

No data.