PT-2021-15398 · Nvidia · Nvidia Geforce Experience

David Köhler

·

Published

2021-12-23

·

Updated

2022-01-07

·

CVE-2021-23175

CVSS v3.1

8.2

High

VectorAV:L/AC:L/PR:L/UI:R/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions NVIDIA GeForce Experience (affected versions not specified)
Description The issue concerns a problem with user authorization in NVIDIA GeForce Experience, specifically with GameStream not correctly applying individual user access controls for users on the same device. This could lead to escalation of privileges, information disclosure, data tampering, and denial of service, affecting resources beyond the intended security authority of GameStream.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2021-23175

Affected Products

Nvidia Geforce Experience