PT-2019-17809 · Nvidia · Nvidia Geforce Experience

Published

2019-03-28

·

Updated

2020-08-24

·

CVE-2019-5674

CVSS v3.1

7.0

High

VectorAV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA GeForce Experience versions prior to 3.18
Description The issue arises when ShadowPlay or GameStream is enabled, allowing an attacker with system access to potentially execute code, cause a denial of service, or escalate privileges by creating a hard link, as the software fails to check for hard link attacks.
Recommendations For versions prior to 3.18, update to version 3.18 or later to resolve the issue. As a temporary workaround, consider disabling ShadowPlay or GameStream until the update is applied. Restrict access to the system to minimize the risk of exploitation.

Fix

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2019-5674

Affected Products

Nvidia Geforce Experience