[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96174

 
 

909

 
 

78077

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2011-2002

Date: (C)2011-10-11   (M)2017-09-22
 
CVSS Score: 4.7Access Vector: LOCAL
Exploitability Subscore: 3.4Access Complexity: MEDIUM
Impact Subscore: 6.9Authentication: NONE
 Confidentiality: NONE
 Integrity: NONE
 Availability: COMPLETE











win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly handle TrueType fonts, which allows local users to cause a denial of service (system hang) via a crafted font file, aka "Win32k TrueType Font Type Translation Vulnerability."

Reference:
SECTRACK-1026165
BID-49973
MS11-077

CPE    13
cpe:/o:microsoft:windows_server_2008::sp2:x32
cpe:/o:microsoft:windows_7:-:sp1:x32
cpe:/o:microsoft:windows_server_2008:r2::itanium
cpe:/o:microsoft:windows_7:-:-:x64
...
CWE    1
CWE-20
OVAL    2
oval:org.secpod.oval:def:2522
oval:org.secpod.oval:def:2520

© 2013 SecPod Technologies