Show filters
37 Total Results
Displaying 11-20 of 37
Sort by:
Attacker Value
Unknown

CVE-2020-5964

Disclosure Date: June 25, 2020 (last updated November 28, 2024)
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the service host component, in which the application resources integrity check may be missed. Such an attack may lead to code execution, denial of service or information disclosure.
Attacker Value
Unknown

CVE-2020-5958

Disclosure Date: March 11, 2020 (last updated November 27, 2024)
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can plant a malicious DLL file, which may lead to code execution, denial of service, or information disclosure.
Attacker Value
Unknown

CVE-2020-5957

Disclosure Date: March 05, 2020 (last updated November 27, 2024)
NVIDIA Windows GPU Display Driver, all versions, contains a vulnerability in the NVIDIA Control Panel component in which an attacker with local system access can corrupt a system file, which may lead to denial of service or escalation of privileges.
Attacker Value
Unknown

CVE-2019-5702

Disclosure Date: December 24, 2019 (last updated November 27, 2024)
NVIDIA GeForce Experience, all versions prior to 3.20.2, contains a vulnerability when GameStream is enabled in which an attacker with local system access can corrupt a system file, which may lead to denial of service or escalation of privileges.
Attacker Value
Unknown

CVE-2019-5695

Disclosure Date: November 12, 2019 (last updated November 27, 2024)
NVIDIA GeForce Experience (prior to 3.20.1) and Windows GPU Display Driver (all versions) contains a vulnerability in the local service provider component in which an attacker with local system and privileged access can incorrectly load Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service or information disclosure through code execution.
Attacker Value
Unknown

CVE-2019-5689

Disclosure Date: November 09, 2019 (last updated November 27, 2024)
NVIDIA GeForce Experience, all versions prior to 3.20.1, contains a vulnerability in the Downloader component in which a user with local system access can craft input that may allow malicious files to be downloaded and saved. This behavior may lead to code execution, denial of service, or information disclosure.
Attacker Value
Unknown

CVE-2019-5701

Disclosure Date: November 09, 2019 (last updated November 27, 2024)
NVIDIA GeForce Experience, all versions prior to 3.20.0.118, contains a vulnerability when GameStream is enabled in which an attacker with local system access can load the Intel graphics driver DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), which may lead to denial of service, information disclosure, or escalation of privileges through code execution.
Attacker Value
Unknown

CVE-2019-5678

Disclosure Date: May 31, 2019 (last updated November 27, 2024)
NVIDIA GeForce Experience versions prior to 3.19 contains a vulnerability in the Web Helper component, in which an attacker with local system access can craft input that may not be properly validated. Such an attack may lead to code execution, denial of service or information disclosure.
0
Attacker Value
Unknown

CVE-2019-5676

Disclosure Date: May 10, 2019 (last updated November 27, 2024)
NVIDIA Windows GPU Display driver software for Windows (all versions) contains a vulnerability in which it incorrectly loads Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), leading to escalation of privileges through code execution.
Attacker Value
Unknown

CVE-2019-5674

Disclosure Date: March 28, 2019 (last updated November 27, 2024)
NVIDIA GeForce Experience before 3.18 contains a vulnerability when ShadowPlay or GameStream is enabled. When an attacker has access to the system and creates a hard link, the software does not check for hard link attacks. This behavior may lead to code execution, denial of service, or escalation of privileges.
0