ZeroHour

CVE-2017-8691

CVSS 3.0
8.8 high
EPSS
20%p97
Published
()
Modified
Description

Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allow an attacker to execute code remotely on a target system when the Windows font library fails to properly handle specially crafted embedded fonts, aka "Express Compressed Fonts Remote Code Execution Vulnerability."

Vendors
microsoft
Products
windows 7, windows server 2008
Weakness
CWE-119
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news