Skip to content

Instantly share code, notes, and snippets.

View bdeb1337's full-sized avatar
🔨

Bob D bdeb1337

🔨
  • Leuven, Belgium
View GitHub Profile
@bdeb1337
bdeb1337 / 20200114-TLP-WHITE_CVE-2020-0601.md
Last active January 18, 2020 02:48 — forked from SwitHak/20200114-TLP-WHITE_CVE-2020-0601.md
BlueTeam CheatSheet * CVE-2020-0601 * crypt32.dll | Last updated: 2020-01-16 0932 UTC

CVE-2020-0601

General

  • Microsoft disclosed a vulnerability in their monthly Patch Tuesday referenced under CVE-2020-0601.
  • The vulnerability was discovered by the U.S. National Security Agency, anounced today (2020-01-14) in their press conference, followed by a blog post and an official security advisory.
  • The flaw is located in the "CRYPT32.DLL" file under the C:\Windows\System32\ directory.

Vulnerability explanation

  • NSA description:
  • NSA has discovered a critical vulnerability (CVE-2020-0601) affecting Microsoft Windows® cryptographic functionality.