CVE-2020-1319: Microsoft Windows Codecs Library Remote Code Execution Vulnerability
<p>A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited this vulnerability could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.</p> <p>Exploitation of the vulnerability requires that a program process a specially crafted image file.</p> <p>The update addresses the vulnerability by correcting how Microsoft Windows Codecs Library handles objects in memory.</p>
Other sources
A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory, aka 'Microsoft Windows Codecs Library Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1129.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2020-1319?
CVE-2020-1319 has a critical severity rating due to its potential to allow remote code execution.
How do I fix CVE-2020-1319?
To fix CVE-2020-1319, update your Microsoft Windows operating system using the patches provided in the latest security updates.
What systems are affected by CVE-2020-1319?
CVE-2020-1319 affects various versions of Microsoft Windows 10 and Windows Server, including version 1607 through version 2004.
Can CVE-2020-1319 be exploited remotely?
Yes, CVE-2020-1319 can be exploited remotely by an attacker to take control of the affected system.
What are the consequences of not patching CVE-2020-1319?
Failing to patch CVE-2020-1319 can result in unauthorized access, installation of malicious software, and potential data breaches.