packetstormsecurity.com
http://packetstormsecurity.com/files/154087/Microsoft-Font-Subsetting-DLL-ReadTableIntoStructure-Heap-Corruption.html CVE-2019-1150
HIGH
Microsoft Graphics Remote Code Execution Vulnerability
Record summary
CVE-2019-1150 has a selected CVSS score of 8.8 (high); EIP currently links 2 catalogued exploits.
Description
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts, aka 'Microsoft Graphics Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-1144, CVE-2019-1145, CVE-2019-1149, CVE-2019-1151, CVE-2019-1152.
Description source: GitHub Advisory
Exploitation context
Available material
- Catalogued exploits
- 2
CISA SSVC decision
ExploitationNone
AutomatableNo
Technical impactTotal
CISA Coordinator · SSVC 2.0.3 · Evaluated May 30, 2024 · Source: CVE List
Affected products and versions
Showing 12 of 28| Product | Source | Version range | Status |
|---|---|---|---|
Windows 10 Version 1507Browse Microsoft / Windows 10 Version 1507 | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1607Browse Microsoft / Windows 10 Version 1607 | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1703Browse Microsoft / Windows 10 Version 1703 | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1709Browse Microsoft / Windows 10 Version 1709 | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1709 for 32-bit SystemsBrowse Microsoft / Windows 10 Version 1709 for 32-bit Systems | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1803Browse Microsoft / Windows 10 Version 1803 | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1809Browse Microsoft / Windows 10 Version 1809 | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1903 for 32-bit SystemsBrowse Microsoft / Windows 10 Version 1903 for 32-bit Systems | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1903 for ARM64-based SystemsBrowse Microsoft / Windows 10 Version 1903 for ARM64-based Systems | CVE List | 10.0.0 to < publication | affected |
Windows 10 Version 1903 for x64-based SystemsBrowse Microsoft / Windows 10 Version 1903 for x64-based Systems | CVE List | 10.0.0 to < publication | affected |
Windows 7Browse Microsoft / Windows 7 | CVE List | 6.1.0 to < publication | affected |
Windows 7 Service Pack 1Browse Microsoft / Windows 7 Service Pack 1 | CVE List | 6.1.0 to < publication | affected |
Proofs of concept
2Catalogued exploits
ExploitDBMicrosoft Font Subsetting - DLL Heap Corruption in ReadTableIntoStructureExploitDB exploitby Google Security ResearchNot analyzed1 file
ExploitDBMicrosoft Font Subsetting - DLL Heap-Based Out-of-Bounds read in WriteTableFromStructureExploitDB exploitby Google Security ResearchNot analyzed1 file
References
4packetstormsecurity.com
http://packetstormsecurity.com/files/154093/Microsoft-Font-Subsetting-DLL-WriteTableFromStructure-Out-Of-Bounds-Read.html nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2019-1150 portal.msrc.microsoft.com
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1150