[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2015-6107Date: (C)2015-12-15   (M)2024-04-15


The Windows font library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10 Gold and 1511, Office 2007 SP3, Office 2010 SP2, Word Viewer, Skype for Business 2016, Lync 2010, Lync 2013 SP1, and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Graphics Memory Corruption Vulnerability."

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 9.3
Exploit Score: 8.6
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: MEDIUM
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1034331
SECTRACK-1034332
SECTRACK-1034333
SECTRACK-1034336
MS15-128

CPE    13
cpe:/a:microsoft:lync:2013:sp1
cpe:/o:microsoft:windows_10:1511
cpe:/o:microsoft:windows_server_2012:-
cpe:/a:microsoft:lync:2010
...
CWE    1
CWE-119
OVAL    2
oval:org.secpod.oval:def:31755
oval:org.secpod.oval:def:31757

© SecPod Technologies