Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q4h2-45g8-3929

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local service provider component in which an attacker with local system and privileged access can incorrectly load Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service or information disclosure through code execution.

NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local service provider component in which an attacker with local system and privileged access can incorrectly load Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service or information disclosure through code execution.

EPSS

Процентиль: 19%
0.00059
Низкий

Дефекты

CWE-426
CWE-427

Связанные уязвимости

CVSS3: 6.5
nvd
около 6 лет назад

NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local service provider component in which an attacker with local system and privileged access can incorrectly load Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service or information disclosure through code execution.

EPSS

Процентиль: 19%
0.00059
Низкий

Дефекты

CWE-426
CWE-427