CVE-2019-5683

HIGH

NVIDIA Windows GPU Display Driver - Improper Link Resolution in User Mode Video Driver Trace Logger

Title source: llm
STIX 2.1

Description

NVIDIA Windows GPU Display Driver (all versions) contains a vulnerability in the user mode video driver trace logger component. When an attacker has access to the system and creates a hard link, the software does not check for hard link attacks. This behavior may lead to code execution, denial of service, or escalation of privileges.

References (2)

Core 2
Core References
Vendor Advisory x_refsource_confirm
https://nvidia.custhelp.com/app/answers/detail/a_id/4841
Third Party Advisory x_refsource_confirm
https://support.lenovo.com/us/en/product_security/LEN-28096

Scores

CVSS v3 7.8
EPSS 0.0008
EPSS Percentile 22.7%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-59
Status published
Products (1)
nvidia/gpu_driver
Published Aug 06, 2019
Tracked Since Feb 18, 2026