CVE-2020-0964: Critical severity windows 10 vulnerability
Published Apr 15, 2020
·Updated
A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Remote Code Execution Vulnerability'.
Affected Software
20 affected components
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows 10=1909
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2016=1803
Microsoft Windows Server 2016=1903
Microsoft Windows Server 2016=1909
Microsoft Windows Server 2019
Remediation
Event History
Apr 15, 2020
CVE Published
via MITRE·03:13 PM
Data Sourced
via MITRE·03:13 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-0964?
CVE-2020-0964 has a severity rating of Critical as it allows remote code execution.
2
How do I fix CVE-2020-0964?
To fix CVE-2020-0964, ensure that all available security updates for the affected Microsoft products are applied.
3
Which versions of Windows are affected by CVE-2020-0964?
CVE-2020-0964 affects various versions of Microsoft Windows including Windows 7, 8.1, 10, and Windows Server 2008 through 2019.
4
What impact does CVE-2020-0964 have on my system?
CVE-2020-0964 can allow an attacker to execute arbitrary code on the system, potentially gaining control over it.
5
Is there a workaround for CVE-2020-0964?
There are no known workarounds for CVE-2020-0964, making it essential to apply the security updates.