<p>A remote code execution vulnerability exists in the way that Microsoft Windows Codecs Library handles objects in memory. An attacker who successfully exploited the vulnerability could execute arbitrary code.</p> <p>Exploitation of the vulnerability requires that a program process a specially crafted image file.</p> <p>The update addresses the vulnerability by correcting how Microsoft Windows Codecs Library handles objects in memory.</p>
| Software | From | Fixed in |
|---|---|---|
| microsoft / windows_10 | 1709 | 1709.x |
| microsoft / windows_10 | 1803 | 1803.x |
| microsoft / windows_10 | 1809 | 1809.x |
| microsoft / windows_10 | 1903 | 1903.x |
| microsoft / windows_10 | 1909 | 1909.x |
| microsoft / windows_10 | 2004 | 2004.x |