<p>An information disclosure vulnerability exists when the Windows GDI component improperly discloses the contents of its memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise a user’s system.</p> <p>There are multiple ways an attacker could exploit the vulnerability, such as by convincing a user to open a specially crafted document or by convincing a user to visit an untrusted webpage.</p> <p>The update addresses the vulnerability by correcting how the Windows GDI component handles objects in memory.</p>
History

Tue, 01 Oct 2024 16:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published: 2020-09-11T17:08:58

Updated: 2024-10-01T15:57:12.774Z

Reserved: 2019-11-04T00:00:00

Link: CVE-2020-1097

cve-icon Vulnrichment

Updated: 2024-08-04T06:25:01.041Z

cve-icon NVD

Status : Modified

Published: 2020-09-11T17:15:18.713

Modified: 2023-12-31T22:15:56.483

Link: CVE-2020-1097

cve-icon Redhat

No data.