- CVE-2020-1425 and CVE-2020-1457 are two security vulnerabilities or remote code execution vulnerabilities as Microsoft calls them.
- Both vulnerabilities exploit a vulnerability in the way that Microsoft Windows Codecs Library handles objects in memory.
- If you're interested in the latest Windows 10 updates, check our Windows 10 Updates section.
- For more information on updates and security, feel free to visit our comprehensive Updates & Security Hub.
Usually, security updates come in the notorious Patch Tuesday (the second Tuesday of the month), but Microsoft just released two new, out-of-bound security updates.
That is two weeks before Patch Tuesday and gives us some idea about the CVE vulnerabilities importance and the urgency of the updates.
CVE-2020-1425 and CVE-2020-1457 are two security vulnerabilities or remote code execution vulnerabilities as Microsoft calls them.
The vulnerabilities affect the Windows Codecs Library for all Windows 10 versions and Windows Server versions.
How can CVE-2020-1425 and CVE-2020-1457 be exploited?
Both vulnerabilities exploit a vulnerability in the way that Microsoft Windows Codecs Library handles objects in memory.
CVE-2020-1425 is a critical vulnerability and the attacker who would exploit it could obtain information to further compromise the user’s system.
CVE-2020-1457 is listed just as important but it sounds just as dangerous as the attacker who exploits this vulnerability could execute arbitrary code.
Microsoft specifies that the vulnerabilities were not publicly disclosed, have not been exploited, and are less likely to be exploited.
What is the exploitation method for the vulnerabilities?
Apparently, to benefit from this bug, the attacker sends a specially crafted image file that needs to be processed by a program on your computer.
The good news is that you don’t need to do anything to patch your system. The Windows Media Codec will be updated automatically through the Microsoft Store.
Affected customers will be automatically updated by Microsoft Store. Customers do not need to take any action to receive the update.
Alternatively, customers who want to receive the update immediately can check for updates with the Microsoft Store App; more information on this process can be found here.
What do you think about Microsoft’s latest updates? Tell us all about it in the comments section below.
and
If you are looking for a cheap and genuine microsoft product key, warranty for 1 year.
It will be available at the link: https://officerambo.com/shop/
Microsoft Windows Embedded 8.1 Industry Pro : https://officerambo.com/product/windows-embedded-8-1/
Key Windows 7 Professional / Home Base / Home Premium (2 USER) : https://officerambo.com/product/key-windows-7/
Microsoft Windows 8.1 PRO (2 PC) : https://officerambo.com/product/microsoft-windows-8-1-pro/
Windows Server 2012 R2 : https://officerambo.com/product/windows-server-2012-r2/
Visual Studio Enterprise 2019 : https://officerambo.com/product/visual-studio-enterprise-2019/
Windows Server Standard / Datacenter / Essentials : https://officerambo.com/product/windows-server-all-version-standard-datacenter-essentials/
Microsoft Office Professional Plus for Windows : https://officerambo.com/product/microsoft-office-professional-plus-for-windows/
Microsoft Office Home and Student for Windows : https://officerambo.com/product/microsoft-office-home-and-student/
Key Microsoft Access 2016 : https://officerambo.com/product/key-microsoft-access-2016/
Microsoft Visio Professional : https://officerambo.com/product/microsoft-visio-professional/
Microsoft Project Professional : https://officerambo.com/product/microsoft-project-professional/
Account Microsoft Office 365 Profestional Plus 2020 Update For 5 Devices : https://officerambo.com/product/account-microsoft-office-365/
Key Microsoft Windows 10 Profestional / Profestional N : https://officerambo.com/product/key-microsoft-windows-10/
Key Microsoft Windows XP Pro : https://officerambo.com/product/key-microsoft-windows-xp-pro/
Microsoft Office Home and Business for Mac : https://officerambo.com/product/microsoft-office-home-and-business-for-mac/
No comments:
Post a Comment