Security Advisory
CVE-2016-5237
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Valve Steam 3.42.16.13 uses weak permissions for the files in the Steam program directory, which allows local users to modify the files and possibly gain privileges as demonstrated by a Trojan horse Steam.exe file.