Microsoft Windows Open Type Font Information Disclosure (MS16-132: CVE-2016-7210; CVE-2016-7210)

An information disclosure vulnerability has been reported in Microsoft Windows. The vulnerability is due to an error in the way the Open Type Font (OTF) driver handles objects in memory. A remote attacker could exploit this vulnerability by enticing a target user to open a specially crafted OTF file.

Leave a Reply