Description
Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the record length parameter.
Published: 2026-09-14
Score: 2.9 Low
EPSS: < 1% Very Low
KEV: No
Impact: Memory Corruption (Buffer Overflow)
Action: Assess Impact
AI Analysis

Impact

The vulnerability is a buffer overflow that occurs when the program parses the record length parameter of a puzzle file. A malicious record length value causes memory to be overwritten beyond the intended bounds, leading to memory corruption.

Affected Systems

This issue affects Simon Tatham's Portable Puzzle Collection for all versions released prior to 20230116.5782e29. Those installations are vulnerable when they process a puzzle file containing a malicious record length value. The vulnerability is specific to the software's file handling routines and does not apply to later releases that have been patched.

Risk and Exploitability

The CVSS score of 2.9 indicates a low severity. No exploit data is publicly available and the vulnerability is not listed in the CISA KEV catalog. The EPSS score is < 1%, indicating a very low probability of exploitation. The likely attack vector is local: an attacker would need to supply a specially crafted puzzle file to the program. The impact is limited to memory corruption and potential denial of service.

Generated by OpenCVE AI on September 15, 2026 at 16:24 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade to a release version that includes the fix (e.g., 20230116.5782e29 or later).
  • If no patch is available, run the puzzle program with the lowest privilege level possible and isolate it from critical system resources to limit potential damage.
  • Restrict the creation and use of puzzle files that include record length parameters or perform pre‑validation to ensure the length parameter stays within safe bounds before passing the file to the program.

Generated by OpenCVE AI on September 15, 2026 at 16:24 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Simon Tatham
Simon Tatham portable Puzzle Collection
Vendors & Products Simon Tatham
Simon Tatham portable Puzzle Collection

Tue, 15 Sep 2026 16:45:00 +0000

Type Values Removed Values Added
Title Buffer Overflow via Malformed Record Length in Portable Puzzle Collection

Mon, 14 Sep 2026 23:15:00 +0000

Type Values Removed Values Added
Title Buffer Overflow via Malformed Record Length in Portable Puzzle Collection

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Mon, 14 Sep 2026 04:30:00 +0000

Type Values Removed Values Added
Description Portable Puzzle Collection before 20230116.5782e29 was discovered to contain a buffer overflow via the record length parameter.
Weaknesses CWE-120
References
Metrics cvssV3_1

{'score': 2.9, 'vector': 'CVSS:3.1/AV:L/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:L'}


Subscriptions

Simon Tatham Portable Puzzle Collection
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-14T18:13:21.431Z

Reserved: 2023-01-23T00:00:00.000Z

Link: CVE-2023-24291

cve-icon Vulnrichment

Updated: 2026-09-14T14:56:34.186Z

cve-icon NVD

Status : Deferred

Published: 2026-09-14T05:16:56.700

Modified: 2026-09-22T20:00:03.713

Link: CVE-2023-24291

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-17T19:47:06Z

Weaknesses
  • CWE-120

    Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')