CVE-2020-1464
Microsoft Windows 10 Version 1803, Microsoft Windows 10 Version 1809, Microsoft Windows Server 2019
Published 17 Aug 2020 · updated 17 Jun 2026 · Analyzed
Exploited in the wild
CISA added this to its Known Exploited Vulnerabilities catalog on 3 Nov 2021, with a remediation deadline of 3 May 2022 for US federal agencies.
Required action: Apply updates per vendor instructions.
Description
A spoofing vulnerability exists when Windows incorrectly validates file signatures. An attacker who successfully exploited this vulnerability could bypass security features and load improperly signed files. In an attack scenario, an attacker could bypass security features intended to prevent improperly signed files from being loaded. The update addresses the vulnerability by correcting how Windows validates file signatures.
References
- blog.virustotal.com/2019/01/distribution-of-malicious-jar-appended.html · Third Party Advisory
- krebsonsecurity.com/2020/08/microsoft-put-off-fixing-zero-day-for-2-years/ · Issue Tracking, Third Party Advisory
- medium.com/%40TalBeerySec/glueball-the-story-of-cve-2020-1464-50091a1f98bd · Exploit, Third Party Advisory
- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1464 · Patch, Vendor Advisory
- www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2020-1464 · US Government Resource