CVE-2018-4052 Information
Feb 14, 2021
cve
Description
An exploitable local information leak vulnerability exists in the privileged helper tool of GOG Galaxy’s Games version 1.2.47 for macOS. An attacker can pass a PID and receive information running on it that would usually only be accessible to the root user.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N
Reference
https://talosintelligence.com/vulnerability_reports/TALOS-2018-0726
Attack Complexity
LOW
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.5
Share on: