NVIDIA GeForce Experience, all versions prior to 3.22, contains a vulnerability in GameStream plugins where log files are created using NT/System level permissions, which may lead to code execution, denial of service, or local privilege escalation. The attacker does not have control over the consequence of a modification nor would they be able to leak information as a direct result of the overwrite.
References
Link | Resource |
---|---|
https://nvidia.custhelp.com/app/answers/detail/a_id/5184 | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: nvidia
Published: 2021-04-20T14:20:11
Updated: 2021-05-15T14:03:56
Reserved: 2020-11-12T00:00:00
Link: CVE-2021-1079
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-04-20T16:15:10.260
Modified: 2021-05-18T16:16:01.360
Link: CVE-2021-1079
JSON object: View
Redhat Information
No data.
CWE