Integer overflow in the Embedded OpenType (EOT) Font Engine in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows remote attackers to execute arbitrary code via a crafted table in an embedded font, aka "Embedded OpenType Font Integer Overflow Vulnerability."
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 21 Jan 2025 18:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Weaknesses | CWE-190 | |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2025-01-21T17:26:56.278Z
Reserved: 2010-05-11T00:00:00
Link: CVE-2010-1883
Updated: 2024-08-07T01:35:53.851Z
Status : Deferred
Published: 2010-10-13T19:00:18.430
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-1883
No data.
OpenCVE Enrichment
No data.