Symbolic Link Vulnerability in NVIDIA GeForce Experience
CVE-2022-42292
5MEDIUM
What is CVE-2022-42292?
NVIDIA GeForce Experience is vulnerable due to a flaw in the NVContainer component, allowing non-administrative users to create symbolic links to files that require elevated privileges. This improper handling can enable users to perform unauthorized actions, potentially leading to denial of service, privilege escalation, or limited tampering with data. Organizations utilizing GeForce Experience should assess their security posture and apply appropriate mitigations to protect against exploitation of this vulnerability.
Affected Version(s)
GeForce Experience Windows All versions prior to 3.27.0.112