CVE-2022-42292

Severity CVSS v4.0:
Pending analysis
Type:
CWE-59 Link Following
Publication date:
12/02/2023
Last modified:
07/11/2023

Description

<br /> NVIDIA GeForce Experience contains a vulnerability in the NVContainer component, where a user without administrator privileges can create a symbolic link to a file that requires elevated privileges to write to or modify, which may lead to denial of service, escalation of privilege or limited data tampering.<br /> <br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nvidia:geforce_experience:*:*:*:*:*:*:*:* 3.27.0.112 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools