PT-2020-3735 · Microsoft · Windows 10+1
Published
2020-08-11
·
Updated
2024-01-19
·
CVE-2020-1510
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions:
Windows 10 x64 1909 (OS Build 18363.719)
Description:
An information disclosure issue exists due to the win32k component improperly handling kernel information. This could allow an attacker to obtain information that could further compromise the system. To exploit this, an attacker must log on to the affected system and run a specially crafted application. The issue is related to errors in handling objects in memory.
Recommendations:
For Windows 10 x64 1909 (OS Build 18363.719), the security update addresses the issue by correcting how win32k handles objects in memory. Apply the security update to resolve the issue. As a temporary workaround, consider restricting access to sensitive system information until the update is applied.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Windows 10