vulnerability

Microsoft CVE-2020-1319: Microsoft Windows Codecs Library Remote Code Execution Vulnerability

Severity
9
CVSS
(AV:N/AC:M/Au:N/C:C/I:C/A:C)
Published
Sep 8, 2020
Added
Sep 8, 2020
Modified
Jan 3, 2024

Description

A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Exploitation of the vulnerability requires that a program process a specially crafted image file.
The update addresses the vulnerability by correcting how Microsoft Windows Codecs Library handles objects in memory.

Solutions

msft-kb4571756-5b919d47-fce4-48a0-8d72-b3fc27b78f6emsft-kb4574727-0eef97a6-edd8-47e9-b6c7-d2f66afcc6a1msft-kb4574727-48c91ab8-33a2-4dc3-96b2-9d75dc6c1f78msft-kb4577048-2a6f610f-3d94-44f9-9494-dff5d7dc4c7dmsft-kb4577048-8b77cb70-27e9-4194-8f41-961ff9f368e3msft-kb4577053-12c49102-1b38-42a7-8c2a-9d72e0144a4dmsft-kb4577053-2cb12d27-8402-4b36-b44e-6496985fe4bbmsft-kb4577053-2fd523e1-6405-49f3-969f-cf7b165622ecmsft-kb4577053-8d0ba4d5-cad5-40be-b7a6-217507cba489msft-kb4577053-ec5db2e3-9ef0-4898-b29d-f06265c1bd45msft-kb4577070-09dac0b6-2b41-4365-b493-1f9100614a59msft-kb4577070-f641b947-d0d7-449a-8152-9de3a3ff376bmsft-kb4577071-3ff40370-a545-4963-ac68-b4514134ae04msft-kb4577071-4e5fb1e0-c9ea-4e9c-bf38-01f1f39da91f

References

    Title
    NEW

    Explore Exposure Command

    Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.