CVE-2020-1574

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
17/08/2020
Last modified:
19/01/2024

Description

A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code.<br /> Exploitation of the vulnerability requires that a program process a specially crafted image file.<br /> The update addresses the vulnerability by correcting how Microsoft Windows Codecs Library handles objects in memory.<br />

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:microsoft:windows_10:1909:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_10:2004:*:*:*:*:*:*:*