Buffer overflow in Microsoft Windows and Windows Server - CVE-2020-1054
Published: May 12, 2020 / Updated: October 9, 2021
Vulnerability details
The vulnerability allows a local user to escalate privileges on the system.
The vulnerability exists due to a boundary error when processing objects in memory within the Windows kernel-mode driver. A local user can create a malicious application, launch it on the system and execute arbitrary code with SYSTEM privileges.
Affected software
Windows Server
How to mitigate CVE-2020-1054
Links to Public Exploits and PoC-codes
- Exploit #4929 - Microsoft Windows DrawIconEx OOB Write Local Privilege Elevation (December 15, 2020)
- Exploit #4817 - CVE-2020-1054 () (November 10, 2020)
- Exploit #4759 - CVE-2020-1054 (Windows 7 LPE) (October 28, 2020)
- Exploit #3606 - CVE-2020-1054 () (July 28, 2020)
- Exploit #3592 - CVE-2020-1054 () (July 25, 2020)
- Exploit #3529 - CVE-2020-1054 () (July 20, 2020)
- Exploit #3461 - cve-2020-1054 (LPE for CVE-2020-1054 targeting Windows 7 x64) (July 15, 2020)
- Exploit #2675 - CPR-Zero: CVE-2020-1054 (May 18, 2020)
- Exploit #2667 - CPR-Zero: CVE-2020-1054 (May 14, 2020)