New Search

Windows Bluetooth Service Elevation of Privilege Vulnerability - CVE-2020-1280

oval:org.cisecurity:def:7767

An elevation of privilege vulnerability exists in the way that the Windows Bluetooth Service handles objects in memory. An attacker who successfully exploited the vulnerability could execute code with elevated permissions. To exploit the vulnerability a locally authenticated attacker could run a specially crafted application. The security update addresses the vulnerability by ensuring the Windows Bluetooth Service properly handles objects in memory.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Server 2019
  • Microsoft Windows 10
Class:
vulnerability
Reference(s):
  • CVE-2020-1280
  • MSRC-CVE-2020-1280
  • KB4561602
  • KB4561621
  • KB4561608
  • KB4560960
Product(s):