Buffer overflow in Microsoft Windows and Windows Server - CVE-2020-0668
Published: February 11, 2020 / Updated: April 30, 2024
Vulnerability details
The vulnerability allows a local user to escalate privilege so the system.
The vulnerability exists due to a boundary error in the Windows Kernel when handling objects in memory. A local user can create a specially crafted application, trigger memory corruption and execute arbitrary code on the target system with elevated privileges.
Affected software
Windows Server
Solutions Enabler Virtual Appliance
Solutions Enabler
Unisphere for PowerMax Virtual Appliance
Unisphere for PowerMax
How to mitigate CVE-2020-0668
Solutions Enabler - addressed in versions 9.0.0.19, 9.1.0.6
Unisphere for PowerMax Virtual Appliance - addressed in versions 9.0.2.18, 9.1.0.17
Unisphere for PowerMax - addressed in versions 9.0.2.18, 9.1.0.17
Links to Public Exploits and PoC-codes
- Exploit #6957 - CVE-2020-0668 (Make CVE-2020-0668 exploit work for version < win10 v1903 and version >= win10 v1903) (October 29, 2021)
- Exploit #2851 - CVE-2020-0668 (Use CVE-2020-0668 to perform an arbitrary privileged file move operation.) (June 3, 2020)
- Exploit #2638 - Service Tracing Privilege Escalation (May 11, 2020)
- Exploit #2634 - Service Tracing Privilege Elevation Vulnerability (May 11, 2020)
- Exploit #306 - cve_2020_0668 (cve_2020_0668) (March 18, 2020)
- Exploit #307 - SysTracingPoc (CVE-2020-0668 - Microsoft Windows Service Tracing Arbitrary File Move Local Privilege Escalation Vulnerability) (March 18, 2020)
- Exploit #308 - CVE-2020-0668 (CVE-2020-0668) (March 18, 2020)