vendor:
Windows
by:
7.5
CVSS
HIGH
Memory Corruption
119
CWE
Product Name: Windows
Affected Version From: Windows (unspecified version)
Affected Version To: Windows (unspecified version)
Patch Exists: YES
Related CWE:
CPE: fontsub.dll
Platforms Tested: Windows
Microsoft Font Subsetting DLL Crash
The fontsub.dll library in Windows is responsible for subsetting TTF fonts. A malformed font file can trigger a crash in the fontsub!WriteTableFromStructure function, leading to a memory corruption vulnerability.
Mitigation:
Apply the latest security updates from Microsoft to fix this vulnerability.