0xem.ma
https://0xem.ma/cve/2020/04/28/Source-hl2-relaunch-exec.html CVE-2020-12242
HIGH
Source Engine CS:GO BuildID: 4937372 - Arbitrary Code Execution
Record summary
CVE-2020-12242 has a selected CVSS score of 7.8 (high); EIP currently links 1 catalogued exploit.
Description
Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBSource Engine CS:GO BuildID: 4937372 - Arbitrary Code ExecutionExploitDB exploitby 0xEmmaNot analyzed1 file
References
2nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2020-12242