CVE-2020-1248: Critical severity windows 10 vulnerability
Published Jun 9, 2020
·Updated
A remote code execution vulnerability exists in the way that the Windows Graphics Device Interface (GDI) handles objects in the memory, aka 'GDI+ Remote Code Execution Vulnerability'.
Affected Software
6 affected components
Microsoft Windows 10=1903
Microsoft Windows 10=1909
Microsoft Windows 10=2004
Microsoft Windows Server 2016=1903
Microsoft Windows Server 2016=1909
Microsoft Windows Server 2016=2004
Remediation
Event History
Jun 9, 2020
CVE Published
via MITRE·07:43 PM
Data Sourced
via MITRE·07:43 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2020-1248?
CVE-2020-1248 is classified as a critical remote code execution vulnerability.
2
How do I fix CVE-2020-1248?
To mitigate CVE-2020-1248, users should apply the latest security updates provided by Microsoft for their affected Windows versions.
3
Which systems are affected by CVE-2020-1248?
CVE-2020-1248 affects Microsoft Windows 10 versions 1903, 1909, 2004, and Windows Server 2016 versions 1903, 1909, 2004.
4
What type of vulnerability is CVE-2020-1248?
CVE-2020-1248 is a remote code execution vulnerability associated with the Windows Graphics Device Interface (GDI).
5
What is the impact of exploiting CVE-2020-1248?
Exploiting CVE-2020-1248 could allow an attacker to execute arbitrary code on the affected system.