Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-41170 | Unity Parsec has a TOCTOU race condition that permits local attackers to escalate privileges to SYSTEM if Parsec was installed in "Per User" mode. The application intentionally launches DLLs from a user-owned directory but intended to always perform integrity verification of those DLLs. This affects Parsec Loader versions through 8. Parsec Loader 9 is a fixed version. |
Tue, 08 Oct 2024 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-10-08T14:24:57.559Z
Reserved: 2023-06-29T00:00:00.000Z
Link: CVE-2023-37250
Updated: 2024-08-02T17:09:34.060Z
Status : Modified
Published: 2023-08-20T08:15:09.013
Modified: 2024-11-21T08:11:18.573
Link: CVE-2023-37250
No data.
OpenCVE Enrichment
No data.
EUVD