CVE-2020-17139: Windows Overlay Filter Security Feature Bypass Vulnerability
Published Dec 8, 2020
·Updated
Windows Overlay Filter Security Feature Bypass Vulnerability
Affected Software
40 affected componentsFixes available
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=20h2
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows 10=1903
Microsoft Windows 10=1903
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=1909
Microsoft Windows 10=2004
Microsoft Windows 10=2004
Microsoft Windows 10=2004
Microsoft Windows Server 2016=20h2
Microsoft Windows Server 2016=1903
Microsoft Windows Server 2016=1909
Microsoft Windows Server 2016=2004
Microsoft Windows Server 2019
Microsoft Windows 10=2004
Microsoft Windows Server=2004
Microsoft Windows 10=2004
Microsoft Windows 10=2004
Microsoft Windows 10=1903
Microsoft Windows Server=1903
Microsoft Windows Server 2019
Microsoft Windows 10=1909
Microsoft Windows 10=1809
Microsoft Windows 10=1909
Microsoft Windows Server=1909
Microsoft Windows 10=1903
Microsoft Windows 10=1909
Microsoft Windows Server 2019
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows 10=20H2
Microsoft Windows 10=20H2
Microsoft Windows 10=1809
Microsoft Windows Server=20H2
Remediation
Event History
Dec 8, 2020
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeaknessAffected Software
Updated
via Microsoft·08:00 AM
Affected Software
Updated
via Microsoft·08:00 AM
Description
Dec 9, 2020
CVE Published
via MITRE·11:36 PM
Data Sourced
via MITRE·11:36 PM
DescriptionSeverity
Dec 10, 2020
Data Sourced
via NVD·12:15 AM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is CVE-2020-17139?
CVE-2020-17139 is a security vulnerability in Windows Overlay Filter that allows for a security feature bypass.
2
Which software versions are affected by CVE-2020-17139?
CVE-2020-17139 affects all versions of Microsoft Windows 10 (20H2, 1809, 1903, 1909, 2004) and Windows Server 2016 (20H2, 1903, 1909, 2004) and Windows Server 2019.
3
What is the severity of CVE-2020-17139?
The severity of CVE-2020-17139 is high, with a CVSS score of 7.8.
4
How can I fix CVE-2020-17139?
To fix CVE-2020-17139, it is recommended to apply the latest security updates provided by Microsoft.
5
Where can I find more information about CVE-2020-17139?
You can find more information about CVE-2020-17139 on the Microsoft Security Guidance Advisory page: [here](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17139).