In case you haven't updated to Nvidia's latest GeForce Experience version, now is the time to do so. If you're still on anything older than version 3.27.0.112, your PC could be wide open to certain cybersecurity risks, with the potential for hackers to gain access to your PC via your outdated GeForce Experience software.
The vulnerabilities, as described by the Nvidia development team in a security bulletin(opens in new tab) (via Hardware Info(opens in new tab)), include «code execution, information disclosure, data tampering, and denial of service.»
Discovered by Minse Kim of Korea University's DNSLab, there are three main attack methods that older GeForce Experience versions leaves users open to. The one that scores highest on the vulnerability scale would involve the user initialising the GeForce Experience install from a compromised directory. Looks like they had to have accidentally deleted something from the install folder first, though. So although it's probably a rare occurrence, it can lead to some serious data tampering.
The second vulnerability would see the hackers using the installer to do their nefarious bidding.
«GeForce Experience contains an uncontrolled search path vulnerability in all its client installers,» the bulletin says. In order to exploit this, the hackers would need to have already gained user level privileges, allowing them to use the installer to load an arbitrary DLL. That would allow them to escalate their privileges and execute whatever code they fancied on your PC.
Best CPU for gaming(opens in new tab): The top chips from Intel and AMDBest gaming motherboard(opens in new tab): The right boardsBest graphics card(opens in new tab): Your perfect pixel-pusher awaitsBest SSD for gaming(opens
Read more on pcgamer.com