Researcher discloses second Steam zero-day exploit after being shut out of bug bounty program

Researcher discloses second Steam zero-day exploit after being shut out of bug bounty program
фото показано с : thenextweb.com

2019-8-22 09:52

A second zero-day vulnerability has been publicly disclosed in the Steam gaming client by security researcher Vasily Kravets after he said he was banned from its bug-bounty program. The revelations come two weeks after another zero-day previously disclosed by Kravets and researcher Matt Nelson was disputed by Valve, Steam’s parent company.

The flaw (CVE-2019-14743), which affects Windows versions of the client, concerns a privilege escalation (aka elevation of privilege or local privilege escalation) bug that makes it possible for other apps, and potentially malware, on a user’s computer to run code with system privileges. As a result, a threat actor could…

This story continues at The Next Web

.

Similar to Notcoin - TapSwap on Solana Airdrops In 2024

origin »

Bounty (XBTY) на Currencies.ru

$ 0.0005761 (+2.32%)
Объем 24H $1.75k
Изменеия 24h: 57.74 %, 7d: -87.19 %
Cегодня L: $0.0002954 - H: $0.0005815
Капитализация $0 Rank 6762
Доступно / Всего 0 XBTY

privilege researcher steam zero-day client escalation disclosed