Buffer Overflow Vulnerability in Portable Puzzle Collection by Simon Tatham
CVE-2023-24291

2.9LOW

Key Information:

Vendor
CVE Published:
14 September 2026

What is CVE-2023-24291?

The Portable Puzzle Collection, maintained by Simon Tatham, has been identified to have a buffer overflow vulnerability that arises from improper handling of the record length parameter. This flaw can potentially allow attackers to exploit the vulnerability, leading to unexpected behavior or execution of arbitrary code. It is critical for users to update to version 20230116.5782e29 or later to mitigate this risk.

Affected Version(s)

Portable Puzzle Collection 0 < 20230116.5782e29

References

CVSS V3.1

Score:
2.9
Severity:
LOW
Confidentiality:
None
Integrity:
None
Availability:
None
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.