imPC@ndo IT

Tracker / CVE-2017-8682

CVE-2017-8682

High 8.8

Windows graphics on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, Windows Server 2016, Microsoft Office Word Viewer, Microsoft Office 2007 Service Pack 3 , and Microsoft Office 2010 Service Pack 2 allows an attacker to execute remote code by the way it handles embedded fonts, aka "Win32k Graphics Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8683.

Affected products and versions

microsoft office_2007
microsoft office_2010
microsoft office_word_viewer
microsoft windows_10
microsoft windows_7
microsoft windows_8.1
microsoft windows_rt_8.1
microsoft windows_server_2008
microsoft windows_server_2012
microsoft windows_server_2016

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References