Vulnerability Description
Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Valvesoftware | Source | - |
Related Weaknesses (CWE)
References
- https://0xem.ma/cve/2020/04/28/Source-hl2-relaunch-exec.htmlExploitThird Party Advisory
- https://0xem.ma/cve/2020/04/28/Source-hl2-relaunch-exec.htmlExploitThird Party Advisory
FAQ
What is CVE-2020-12242?
CVE-2020-12242 is a vulnerability with a CVSS score of 7.8 (HIGH). Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.
How severe is CVE-2020-12242?
CVE-2020-12242 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2020-12242?
Check the references section above for vendor advisories and patch information. Affected products include: Valvesoftware Source.