Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jmc3-547v-q3qv

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file.

Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file.

EPSS

Процентиль: 33%
0.00127
Низкий

Дефекты

CWE-269

Связанные уязвимости

CVSS3: 7.8
nvd
почти 6 лет назад

Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file.

EPSS

Процентиль: 33%
0.00127
Низкий

Дефекты

CWE-269