Description
An exploitable local privilege elevation vulnerability exists in the file system permissions of the `Temp` directory in GOG Galaxy 1.2.48.36 (Windows 64-bit Installer). An attacker can overwrite executables of the Desktop Galaxy Updater to exploit this vulnerability and execute arbitrary code with SYSTEM privileges.
In plain language
AI Worth attentionGOG Galaxy 1.2.48.36 (Windows 64-bit Installer) has a flaw that can let someone already signed in to a computer take full control of it, so affected businesses should have IT review it.
Local privilege escalation in GOG Galaxy 1.2.48.36 (Windows 64-bit Installer) through insecure Temp-directory permissions allows a low-privileged user to overwrite Desktop Galaxy Updater executables and execute code as SYSTEM.
What to do now
- Check whether any Windows computers use the GOG Galaxy 1.2.48.36 64-bit installer or have its Desktop Galaxy Updater installed.
- Ask your IT provider or GOG support for a supported replacement or updated installer; no fixed version has been identified.
- Until guidance is available, remove the affected installer from shared devices and restrict who can sign in locally to affected computers.
- Review affected computers for unexpected changes to the Galaxy updater files or Temp folder permissions.
CVSS Vector Breakdown
AV:LAttack VectorAC:LAttack ComplexityPR:LPrivileges RequiredUI:NUser InteractionS:UScopeC:HConfidentialityI:HIntegrityA:HAvailabilityWeaknesses
Affected Products
Exploitability
References
Unlock Complete Vulnerability Intelligence
Get the full picture for CVE-2018-4048 and every CVE in our database. Create a free account — no credit card required.
Create Free Account