PT-2020-3735 · Microsoft · Windows 10+1

Published

2020-08-11

·

Updated

2024-01-19

·

CVE-2020-1510

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Name of the Vulnerable Software and Affected Versions: Windows 10 x64 1909 (OS Build 18363.719)
Description: An information disclosure issue exists due to the win32k component improperly handling kernel information. This could allow an attacker to obtain information that could further compromise the system. To exploit this, an attacker must log on to the affected system and run a specially crafted application. The issue is related to errors in handling objects in memory.
Recommendations: For Windows 10 x64 1909 (OS Build 18363.719), the security update addresses the issue by correcting how win32k handles objects in memory. Apply the security update to resolve the issue. As a temporary workaround, consider restricting access to sensitive system information until the update is applied.

Fix

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2020-04094
CVE-2020-1510

Affected Products

Windows
Windows 10