Skip to content

Instantly share code, notes, and snippets.

@bdeb1337
bdeb1337 / 20200114-TLP-WHITE_CVE-2020-0601.md
Last active Jan 18, 2020 — forked from SwitHak/20200114-TLP-WHITE_CVE-2020-0601.md
BlueTeam CheatSheet * CVE-2020-0601 * crypt32.dll | Last updated: 2020-01-16 0932 UTC
View 20200114-TLP-WHITE_CVE-2020-0601.md

CVE-2020-0601

General

  • Microsoft disclosed a vulnerability in their monthly Patch Tuesday referenced under CVE-2020-0601.
  • The vulnerability was discovered by the U.S. National Security Agency, anounced today (2020-01-14) in their press conference, followed by a blog post and an official security advisory.
  • The flaw is located in the "CRYPT32.DLL" file under the C:\Windows\System32\ directory.

Vulnerability explanation

  • NSA description:
  • NSA has discovered a critical vulnerability (CVE-2020-0601) affecting Microsoft Windows® cryptographic functionality.
You can’t perform that action at this time.