CVE-2021-1092

NVIDIA GPU Display Driver for Windows contains a vulnerability in the NVIDIA Control Panel application where it is susceptible to a Windows file system symbolic link attack where an unprivileged attacker can cause the applications to overwrite privileged files, resulting in potential denial of service or data loss.
References
Link Resource
https://nvidia.custhelp.com/app/answers/detail/a_id/5211 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*
cpe:2.3:a:nvidia:gpu_display_driver:*:*:*:*:*:windows:*:*

History

No history.

Information

Published : 2021-07-22 05:15

Updated : 2022-06-28 14:11


NVD link : CVE-2021-1092

Mitre link : CVE-2021-1092

CVE.ORG link : CVE-2021-1092


JSON object : View

Products Affected

nvidia

  • gpu_display_driver
CWE
CWE-59

Improper Link Resolution Before File Access ('Link Following')