⚠ Actively exploited
Added to CISA KEV on 2022-05-23. Federal agencies required to patch by 2022-06-13. Required action: Apply updates per vendor instructions..

CVE-2020-1027Out-of-bounds Write in Microsoft Windows

Severity
7.8HIGHNVD
EPSS
11.9%
top 6.25%
CISA KEV
KEV
Added 2022-05-23
Due 2022-06-13
Exploit
Exploited in wild
Active exploitation observed
Timeline
PublishedApr 15
KEV addedMay 23
Latest updateMay 24
KEV dueJun 13
CISA Required Action: Apply updates per vendor instructions.

Description

An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privilege Vulnerability'. This CVE ID is unique from CVE-2020-0913, CVE-2020-1000, CVE-2020-1003.

CVSS vector

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.8 | Impact: 5.9

Affected Packages9 packages

Patches

🔴Vulnerability Details

7
GHSA
GHSA-4425-fxh6-87fr: An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privileg2022-05-24
Project0
In-the-Wild Series: Windows Exploits - Project Zero2021-01-01
Project0
Introducing the In-the-Wild Series - Project Zero2021-01-01
CVEList
CVE-2020-1027: An elevation of privilege vulnerability exists in the way that the Windows Kernel handles objects in memory, aka 'Windows Kernel Elevation of Privileg2020-04-15
VulnCheck
Microsoft Windows Kernel Privilege Escalation Vulnerability2020

📋Vendor Advisories

2
CISA
Microsoft Windows Kernel Privilege Escalation Vulnerability2022-05-23
Microsoft
Windows Kernel Elevation of Privilege Vulnerability2020-04-14

🕵️Threat Intelligence

12
Krebs
Microsoft Patch Tuesday, April 2020 Edition2020-04-14
Tenable
Microsoft’s April 2020 Patch Tuesday Addresses 113 CVEs Including Adobe Type Manager Library Zero-Day Flaws (CVE-2020-0938, CVE-2020-1020)2020-04-14
Talos
Microsoft Patch Tuesday — April 2020: Vulnerability disclosures and Snort coverage2020-04-14
Trendmicro
April Patch Tuesday: Fixes for Font-Related, Microsoft SharePoint, Windows Components Vulnerabilities2020-04-14
Qualys
April 2020 Patch Tuesday – 113 Vulns, 19 Critical, Zero-Day Patches, SharePoint, Adobe ColdFusion2020-04-14
CVE-2020-1027 — Out-of-bounds Write in Microsoft | cvebase