CVE-2020-0786HighCVSS 7.1

Windows Tile Object Service Denial of Service Vulnerability

Published
March 10, 2020
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

A denial of service vulnerability exists when the Windows Tile Object Service improperly handles hard links. An attacker who successfully exploited the vulnerability could cause a target system to stop responding. To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application. The vulnerability would allow an attacker to overwrite system files. The update addresses the vulnerability by correcting how the Windows Tile Object Service handles hard links.

🎯 Affected products6

  • Windows 10 Version 1607 for 32-bit Systems
  • Windows 10 Version 1607 for x64-based Systems
  • Windows 10 for 32-bit Systems
  • Windows 10 for x64-based Systems
  • Windows Server 2016
  • Windows Server 2016 (Server Core installation)

✅ Remediation

KB4540693 (Security Update) KB4540670 (Security Update)

🔗 References (4)