CVE-2023-51803: Critical severity LinuxServer.io heimdall vulnerability
Published Mar 31, 2024
·Updated
LinuxServer.io Heimdall before 2.5.7 does not prevent use of icons that have non-image data such as the "<?php ?>" substring.
Affected Software
1 affected component
LinuxServer.io heimdall<2.5.7
Event History
Mar 31, 2024
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Apr 1, 2024
Data Sourced
via NVD·12:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2023-51803?
CVE-2023-51803 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2023-51803?
To fix CVE-2023-51803, upgrade Heimdall to version 2.5.7 or later.
3
What is the impact of CVE-2023-51803?
CVE-2023-51803 allows attackers to use non-image data such as PHP code as icons, potentially leading to code execution.
4
Which versions of Heimdall are affected by CVE-2023-51803?
Heimdall versions prior to 2.5.7 are affected by CVE-2023-51803.
5
Can CVE-2023-51803 be exploited remotely?
Yes, CVE-2023-51803 can be exploited remotely if the vulnerability is present.