PT-2020-3671 · Microsoft · Windows Media Foundation+1
Yangkang
·
Published
2020-08-11
·
Updated
2024-01-19
·
CVE-2020-1477
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Windows Media Foundation (affected versions not specified)
Description
A memory corruption issue exists due to improper handling of objects in memory by Windows Media Foundation. This could allow an attacker to install programs, view, change, or delete data, or create new accounts with full user rights. The vulnerability can be exploited through various means, such as convincing a user to open a specially crafted document or visit a malicious webpage. The issue is related to a buffer overflow in memory. Remote attackers may be able to execute arbitrary code and affect the system.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Buffer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Windows
Windows Media Foundation