Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

CVE-2020-1118

PUBLISHED 19.08.2026

CNA: microsoft

Microsoft Windows Transport Layer Security Denial of Service Vulnerability

Обновлено: 19.08.2026
A denial of service vulnerability exists in the Windows implementation of Transport Layer Security (TLS) when it improperly handles certain key exchanges. An attacker who successfully exploited the vulnerability could cause a target system to stop responding. To exploit this vulnerability, a remote unauthenticated attacker could send a specially crafted request to a target system utilizing TLS 1.2 or lower, triggering the system to automatically reboot. The update addresses the vulnerability by changing the way TLS key exchange messages are validated.

БДУ ФСТЭК

Идентификатор Описание
BDU:2020-02320 Уязвимость реализации протокола TLS (Transport Layer Security) операционных систем Windows, позволяющая нарушителю вызвать отказ в обслуживании

CVSS

Оценка Severity Версия Базовый вектор
8.6 HIGH 3.1 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H/E:P/RL:O/RC:C

EPSS

Вероятность Severity Процентиль ? Дата расчёта
16.22% HIGH 96.71 30.08.2026

Доп. Информация

Product Status

Windows 10 Version 1709
Product: Windows 10 Version 1709
Vendor: Microsoft
Default status: Не определен
Platforms:
  • ARM64-based Systems
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1709 for 32-bit Systems
Product: Windows 10 Version 1709 for 32-bit Systems
Vendor: Microsoft
Default status: Не определен
Platforms:
  • 32-bit Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1803
Product: Windows 10 Version 1803
Vendor: Microsoft
Default status: Не определен
Platforms:
  • 32-bit Systems
  • ARM64-based Systems
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1809
Product: Windows 10 Version 1809
Vendor: Microsoft
Default status: Не определен
Platforms:
  • 32-bit Systems
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.17763.0 до publication affected
Windows 10 Version 1809
Product: Windows 10 Version 1809
Vendor: Microsoft
Default status: Не определен
Platforms:
  • ARM64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1903 for 32-bit Systems
Product: Windows 10 Version 1903 for 32-bit Systems
Vendor: Microsoft
Default status: Не определен
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1903 for ARM64-based Systems
Product: Windows 10 Version 1903 for ARM64-based Systems
Vendor: Microsoft
Default status: Не определен
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1903 for x64-based Systems
Product: Windows 10 Version 1903 for x64-based Systems
Vendor: Microsoft
Default status: Не определен
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows 10 Version 1909
Product: Windows 10 Version 1909
Vendor: Microsoft
Default status: Не определен
Platforms:
  • 32-bit Systems
  • ARM64-based Systems
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows Server 2019
Product: Windows Server 2019
Vendor: Microsoft
Default status: Не определен
Platforms:
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.17763.0 до publication affected
Windows Server 2019 (Server Core installation)
Product: Windows Server 2019 (Server Core installation)
Vendor: Microsoft
Default status: Не определен
Platforms:
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.17763.0 до publication affected
Windows Server, version 1803 (Server Core Installation)
Product: Windows Server, version 1803 (Server Core Installation)
Vendor: Microsoft
Default status: Не определен
Platforms:
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows Server, version 1903 (Server Core installation)
Product: Windows Server, version 1903 (Server Core installation)
Vendor: Microsoft
Default status: Не определен
Platforms:
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
Windows Server, version 1909 (Server Core installation)
Product: Windows Server, version 1909 (Server Core installation)
Vendor: Microsoft
Default status: Не определен
Platforms:
  • x64-based Systems
Версии:
Затронутые версии Статус
Наблюдалось в версиях от 10.0.0 до publication affected
 

Ссылки

CVE Program Container

Обновлено: 04.08.2024
SSVC and KEV, plus CVSS and CWE if not provided by the CNA.

Ссылки

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.