Researcher discloses second Steam zero-day exploit after being shut out of bug bounty program

Researcher discloses second Steam zero-day exploit after being shut out of bug bounty program
фото показано с : thenextweb.com

2019-8-22 09:52

A second zero-day vulnerability has been publicly disclosed in the Steam gaming client by security researcher Vasily Kravets after he said he was banned from its bug-bounty program. The revelations come two weeks after another zero-day previously disclosed by Kravets and researcher Matt Nelson was disputed by Valve, Steam’s parent company.

The flaw (CVE-2019-14743), which affects Windows versions of the client, concerns a privilege escalation (aka elevation of privilege or local privilege escalation) bug that makes it possible for other apps, and potentially malware, on a user’s computer to run code with system privileges. As a result, a threat actor could…

This story continues at The Next Web

.

Similar to Notcoin - Blum - Airdrops In 2024

origin »

Bounty (XBTY) на Currencies.ru

$ 0 (+0.00%)
Объем 24H $0
Изменеия 24h: 0.00 %, 7d: -80.95 %
Cегодня L: $0 - H: $0
Капитализация $0 Rank 99999
Доступно / Всего 0 XBTY

privilege researcher steam zero-day client escalation disclosed