CVE-2020-1464: Windows Spoofing Vulnerability
A spoofing vulnerability exists when Windows incorrectly validates file signatures, aka 'Windows Spoofing Vulnerability'.
Other sources
A spoofing vulnerability exists when Windows incorrectly validates file signatures. An attacker who successfully exploited this vulnerability could bypass security features and load improperly signed files. In an attack scenario, an attacker could bypass security features intended to prevent improperly signed files from being loaded. The update addresses the vulnerability by correcting how Windows validates file signatures.
— NVD
Microsoft Windows contains a spoofing vulnerability when Windows incorrectly validates file signatures, allowing an attacker to bypass security features and load improperly signed files.
— CISA
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2020-1464?
CVE-2020-1464 has a severity rating of medium with a CVSS score of 5.5.
How do I fix CVE-2020-1464?
To fix CVE-2020-1464, apply the security updates from Microsoft as soon as they are available.
What systems are affected by CVE-2020-1464?
CVE-2020-1464 affects various versions of Microsoft Windows, including Windows 7, Windows 10, and Windows Server versions.
What type of vulnerability is CVE-2020-1464?
CVE-2020-1464 is a spoofing vulnerability that arises from improper validation of file signatures.
What might an attacker do by exploiting CVE-2020-1464?
An attacker who successfully exploits CVE-2020-1464 could bypass security features and execute malicious code.