Risk Scores
CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
30.50%
96.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Server | version 1803 (Core Installation), 2019 (Core installation), 2019 |
| Microsoft | Windows 10 Version 1909 for x64-based Systems | unspecified |
| Microsoft | Windows 10 Version 1903 for x64-based Systems | unspecified |
| Microsoft | Windows 10 Version 1909 for ARM64-based Systems | unspecified |
| Microsoft | Windows | RT 8.1, 8.1 for x64-based systems, 8.1 for 32-bit systems |
| Microsoft | Windows Server, version 1903 (Server Core installation) | unspecified |
| Microsoft | Windows 10 Version 1909 for 32-bit Systems | unspecified |
| Microsoft | Windows 10 Version 1903 for ARM64-based Systems | unspecified |
| Microsoft | Windows 10 Version 1903 for 32-bit Systems | unspecified |
| Microsoft | Windows Server, version 1909 (Server Core installation) | unspecified |
Timeline
- May 23, 2014 PoC Published
- Jan 21, 2020 PoC Published
- Apr 15, 2020 CVE Published
- Apr 15, 2020 PoC Published
- Jun 26, 2020 PoC Published
- Aug 17, 2020 PoC Published
- Sep 17, 2020 PoC Published
- Oct 3, 2020 PoC Published
- Apr 14, 2021 EPSS Score
- Nov 8, 2021 PoC Published
- Nov 20, 2021 PoC Published
- Dec 8, 2021 PoC Published
References
- https://portal.msrc.microsoft.com/fr-FR/security-guidance advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0938 url
- http://packetstormsecurity.com/files/161299/Apple-CoreText-libFontParser.dylib-Stack-Corruption.html url
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0938 url