Description
Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2020-12711 | Writing to an unprivileged file from a privileged OVRRedir.exe process in Oculus Desktop before 1.44.0.32849 on Windows allows local users to write to arbitrary files and consequently gain privileges via vectors involving a hard link to a log file. |
References
| Link | Providers |
|---|---|
| https://www.facebook.com/security/advisories/cve-2020-1885 |
|
History
No history.
Status: PUBLISHED
Assigner: facebook
Published:
Updated: 2024-08-04T06:53:59.851Z
Reserved: 2019-12-02T00:00:00.000Z
Link: CVE-2020-1885
No data.
Status : Modified
Published: 2020-04-08T20:15:14.590
Modified: 2024-11-21T05:11:32.643
Link: CVE-2020-1885
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD