A AegiFlow
UNKNOWNKNOWN EXPLOITED

CVE-2020-1020

Microsoft Windows Adobe Font Manager Library Remote Code Execution Vulnerability

Published
2021-11-03
Modified
2026-07-31
Sources
cisa-kev

Summary

Microsoft Windows Adobe Font Manager Library contains an unspecified vulnerability when handling specially crafted multi-master fonts (Adobe Type 1 PostScript format) that allows for remote code execution for all systems except Windows 10. For systems running Windows 10, an attacker who successfully exploited the vulnerability could execute code in an AppContainer sandbox context with limited privileges and capabilities.

References

Includes data from the CISA Known Exploited Vulnerabilities catalog.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.