ZeroHour

CVE-2020-1355

CVSS 3.1
7.8 high
EPSS
4%p90
Published
()
Modified
Description

A remote code execution vulnerability exists when the Windows Font Driver Host improperly handles memory.An attacker who successfully exploited the vulnerability would gain execution on a victim system.The security update addresses the vulnerability by correcting how the Windows Font Driver Host handles memory., aka 'Windows Font Driver Host Remote Code Execution Vulnerability'.

Vendors
microsoft
Products
windows 10, windows server 2016
Weakness
CWE-20, CWE-787
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news