CVE-2020-0738 — Out-of-bounds Write in Microsoft Windows
Severity
8.8HIGHNVD
EPSS
24.0%
top 3.95%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 11
Latest updateMay 24
Description
A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption Vulnerability'.
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages10 packages
Patches
🔴Vulnerability Details
2GHSA▶
GHSA-4jr7-rvm2-mwgx: A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption V↗2022-05-24
CVEList▶
CVE-2020-0738: A memory corruption vulnerability exists when Windows Media Foundation improperly handles objects in memory, aka 'Media Foundation Memory Corruption V↗2020-02-11
📋Vendor Advisories
1🕵️Threat Intelligence
5Tenable▶
Microsoft’s February 2020 Patch Tuesday Addresses 99 CVEs Including Internet Explorer Zero-Day (CVE-2020-0674)↗2020-02-11
Talos
▶
Talos
▶