For the NVIDIA Quadro, NVS, and GeForce products, GFE GameStream and NVTray Plugin unquoted service path vulnerabilities are examples of the unquoted service path vulnerability in Windows. A successful exploit of a vulnerable service installation can enable malicious code to execute on the system at the system/user privilege level. The CVE-2016-5852 ID is for the NVTray Plugin unquoted service path.
Link | Tags |
---|---|
http://nvidia.custhelp.com/app/answers/detail/a_id/4213 | patch vendor advisory |
https://support.lenovo.com/us/en/product_security/ps500070 | |
http://www.securityfocus.com/bid/93251 | vdb entry |