CVE-2021-30481

Severity CVSS v4.0:
Pending analysis
Type:
CWE-120 Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Publication date:
10/04/2021
Last modified:
03/11/2025

Description

Valve Steam before 2021-04-17, when a Source engine game is installed, allows remote authenticated users to execute arbitrary code because of a buffer overflow that occurs for a Steam invite after one click.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:valvesoftware:steam_client:*:*:*:*:*:*:*:* 2021-04-10 (including)