CVE-2023-51803
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
01/04/2024
Last modified:
15/04/2026
Description
LinuxServer.io Heimdall before 2.5.7 does not prevent use of icons that have non-image data such as the "" substring.
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
References to Advisories, Solutions, and Tools
- https://github.com/linuxserver/Heimdall/pull/1167
- https://github.com/linuxserver/Heimdall/pull/1173
- https://github.com/linuxserver/Heimdall/releases/tag/v2.5.7
- https://github.com/linuxserver/Heimdall/pull/1167
- https://github.com/linuxserver/Heimdall/pull/1173
- https://github.com/linuxserver/Heimdall/releases/tag/v2.5.7



