Risk Scores
CVSS v3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
0.97%
76.5th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Windows Server, version 1903 (Server Core installation) | unspecified |
| Microsoft | Windows | 10 Version 1709 for x64-based Systems, 10 Version 1709 for ARM64-based Systems, 10 for 32-bit Systems |
| Microsoft | Windows 10 Version 1909 for x64-based Systems | unspecified |
| Microsoft | Windows 10 Version 1903 for 32-bit Systems | unspecified |
| Microsoft | Windows 10 Version 1903 for ARM64-based Systems | unspecified |
| Microsoft | Windows 10 Version 1903 for x64-based Systems | unspecified |
| Microsoft | Windows Server | 2012 (Core installation), version 1803 (Core Installation), 2019 |
| Microsoft | Windows 10 Version 1909 for 32-bit Systems | unspecified |
| Microsoft | Windows 10 Version 1909 for ARM64-based Systems | unspecified |
| Microsoft | Windows Server, version 1909 (Server Core installation) | unspecified |
Timeline
- May 23, 2014 PoC Published
- Jan 21, 2020 PoC Published
- Apr 15, 2020 CVE Published
- Apr 15, 2020 PoC Published
- Jun 26, 2020 PoC Published
- Aug 17, 2020 PoC Published
- Sep 17, 2020 PoC Published
- Oct 3, 2020 PoC Published
- Apr 14, 2021 EPSS Score
- Jun 22, 2021 EPSS Score
- Aug 23, 2021 EPSS Score
- Nov 8, 2021 PoC Published
References
- https://portal.msrc.microsoft.com/fr-FR/security-guidance advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0938 url
- http://packetstormsecurity.com/files/161299/Apple-CoreText-libFontParser.dylib-Stack-Corruption.html url
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-0938 url