Buffer Overflow Vulnerability in Portable Puzzle Collection by Simon Tatham
CVE-2023-24287

2.9LOW

Key Information:

Vendor
CVE Published:
14 September 2026

What is CVE-2023-24287?

A buffer overflow vulnerability has been identified in the Portable Puzzle Collection prior to version 20230116.5782e29. This security flaw can be exploited through the 'M' command, potentially allowing an attacker to execute arbitrary code or manipulate the application's memory. Users are encouraged to update to the latest version to mitigate these risks and ensure the security of their systems. For further information, please refer to the reports available in the Debian bug tracker and the related Git commit.

Affected Version(s)

Portable Puzzle Collection 0 < 20230116.5782e29

References

CVSS V3.1

Score:
2.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.