Web Hack List

Collected research

Steam Browser Protocol Insecurity

ReVuln turns local Steam bugs remote through the steam:// URL handler, which most browsers invoke with no warning or a truncated one, and which Steam's own browser can be made to follow via a YouTube link bounce. The paper reports an integer overflow in the retailinstall TGA splash loader plus command-line injection into Source, Unreal, APB Reloaded and MicroVolts.

Record

Researcher
Luigi Auriemma and Donato Ferrante
Published by
revuln.com
Format
Whitepaper
Topic
Browser

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Luigi Auriemma and Donato Ferrante, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .