ASA-2019-00313 – NVIDIA GeForce Experience: DLL preloading attack (binary planting) in installer software

NVIDIA GeForce Experience installer software contains a vulnerability in which it incorrectly loads Windows system DLLs without validating the path or signature (also known as a binary planting or DLL preloading attack), leading to escalation of privileges through code execution. The attacker requires local system access.