ms13-054

About this tag
MS13-054 is a critical security bulletin from Microsoft addressing a vulnerability in GDI+ that could allow remote code execution. The vulnerability affects Microsoft Windows, Microsoft Office, Microsoft Lync, and Microsoft Visual Studio. It is triggered when a user views shared content embedding specially crafted TrueType font files. The update resolves a privately reported issue and is rated Critical. The bulletin was initially published on July 9, 2013, with a revision on August 1, 2013, that included detection changes for Microsoft Office 2010 and additional FAQ clarifications. Users who have already applied the updates do not need further action.
  1. News

    MS13-054 - Critical : Vulnerability in GDI+ Could Allow Remote Code Execution (2848295) -...

    Severity Rating: Critical Revision Note: V.1.1 (August 1, 2013): Bulletin revised to announce a detection change in the 2687276 update for Microsoft Office 2010. There were no changes to the security update files. Customers who have already successfully updated their systems do not need to take...
  2. News

    MS13-054 - Critical : Vulnerability in GDI+ Could Allow Remote Code Execution (2848295) - Version: 1

    Severity Rating: Critical Revision Note: V1.0 (July 9, 2013): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Windows, Microsoft Office, Microsoft Lync, and Microsoft Visual Studio. The vulnerability could allow...
Back
Top