CVE-2020-12242: Valvesoftware Source

High severity, CVSS 7.8. EPSS: 1.1% chance of exploitation in the next 30 days.

Valve Source allows local users to gain privileges by writing to the /tmp/hl2_relaunch file, which is later executed in the context of a different user account.

Affected products

Published 2020-04-27. Last modified 2026-06-17.