PT-2024-14297 · Heimdal · Heimdal
Published
2024-03-31
·
Updated
2024-08-20
·
CVE-2023-51803
CVSS v3.1
9.8
Critical
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
Name of the Vulnerable Software and Affected Versions
Heimdall versions prior to 2.5.7
Description
The issue concerns a flaw in the Icon Handler that could lead to privilege escalation. This could potentially be exploited through a local network attack. There is currently no known exploit for this issue.
Recommendations
For Heimdall versions prior to 2.5.7, upgrade to version 2.5.7 or later to resolve the issue. As a temporary workaround, consider restricting access to the Icon Handler until the upgrade can be applied.
Fix
Uncontrolled Recursion
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Heimdal