Severity Rating: Critical
Revision Note: V2.1 (July 9, 2013): Bulletin revised to announce a detection change that excludes Windows 7 language packs from the 2485376 update for Windows XP Professional x64 Edition Service Pack 2. This is a detection change only. Customers who have already...
announcement
bug fixes
cffdriver
critical
detection change
email security
font format
internet safety
online threats
patch
privately reported
remote code execution
security
update
user awareness
vulnerability
windows
windows 7
windows xp
Severity Rating: Critical
Revision Note: V2.1 (July 9, 2013): Bulletin revised to announce a detection change that excludes Windows 7 language packs from the 2485376 update for Windows XP Professional x64 Edition Service Pack 2. This is a detection change only. Customers who have already...
attack
cffdriver
critical
detection
email
execution
fonts
messenger
ms11-007
opentype
patch
remote
security
update
user action
vulnerability
web security
windows 7
windows xp
Resolves a vulnerability in the Windows OpenType Compact Font Format (CFF) driver that could allow remote code execution if a user views content rendered in a specially crafted CFF font.
More...
Resolves a vulnerability in the Windows OpenType Compact Font Format (CFF) driver that could allow elevation of privileges if a user views content that is rendered in a specially crafted CFF font.
Link Removed
Severity Rating: Critical - Revision Note: V1.0 (April 12, 2011): Bulletin published.Summary: This security update resolves a privately reported vulnerability in the OpenType Compact Font Format (CFF) driver. The vulnerability could allow remote code execution if a user views content rendered in...
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in the OpenType Compact Font Format (CFF) driver. The vulnerability could allow remote code execution if a user views content rendered in a specially crafted CFF font. In all cases, an attacker...
Bulletin Severity Rating:Critical - This security update resolves a privately reported vulnerability in the Windows OpenType Compact Font Format (CFF) driver. The vulnerability could allow remote code execution if a user views content rendered in a specially crafted CFF font. In all cases, an...