CVE-2017-0317: High severity Nvidia GPU driver vulnerability
All versions of NVIDIA GPU and GeForce Experience installer contain a vulnerability where it fails to set proper permissions on the package extraction path thus allowing a non-privileged user to tamper with the extracted files, potentially leading to escalation of privileges via code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0317?
CVE-2017-0317 has a high severity rating due to the potential for privilege escalation and code execution.
How do I fix CVE-2017-0317?
To fix CVE-2017-0317, ensure that permissions on the package extraction path are properly set to prevent unauthorized file manipulation.
Which systems are affected by CVE-2017-0317?
CVE-2017-0317 affects all versions of NVIDIA GPU and GeForce Experience installers on Windows.
What types of attacks are possible with CVE-2017-0317?
CVE-2017-0317 could allow non-privileged users to tamper with extracted files, potentially leading to escalated privileges and unauthorized code execution.
Is there a patch available for CVE-2017-0317?
Yes, NVIDIA has released updates to address CVE-2017-0317, which should be applied to mitigate the vulnerability.