CVE-2020-5992

Severity CVSS v4.0:
Pending analysis
Type:
CWE-427 Uncontrolled Search Path Element
Publication date:
11/11/2020
Last modified:
23/11/2020

Description

NVIDIA GeForce NOW application software on Windows, all versions prior to 2.0.25.119, contains a vulnerability in its open-source software dependency in which the OpenSSL library is vulnerable to binary planting attacks by a local user, which may lead to code execution or escalation of privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:nvidia:geforce_now:*:*:*:*:*:*:*:* 2.0.25.119 (excluding)
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*


References to Advisories, Solutions, and Tools