CVE-2016-3216
MEDIUMWindows GDI32.dll - ASLR Bypass via Graphics Component Information Disclosure
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2016-3216. PoCs published by Google Security Research.
AI-analyzed exploit summary The writeup describes multiple heap-based out-of-bounds read vulnerabilities in gdi32.dll due to insufficient sanitization of DIB (Device Independent Bitmap) data in EMF (Enhanced Metafile) records. These flaws can lead to memory disclosure, potentially aiding in ASLR bypass or information theft.
Description
GDI32.dll in the Graphics component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows remote attackers to bypass the ASLR protection mechanism via unspecified vectors, aka "Windows Graphics Component Information Disclosure Vulnerability."
Exploits (1)
The writeup describes multiple heap-based out-of-bounds read vulnerabilities in gdi32.dll due to insufficient sanitization of DIB (Device Independent Bitmap) data in EMF (Enhanced Metafile) records. These flaws can lead to memory disclosure, potentially aiding in ASLR bypass or information theft.
References (3)
Scores
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N