Subscribe via feed.
Archive for March, 2017

Microsoft Windows Uniscribe USP10!BuildFSM Memory Corruption

Posted by deepcore under exploit (No Respond)

Microsoft Windows suffers from a uniscribe font processing heap-based memory corruption vulnerability around USP10!BuildFSM.

Microsoft Windows Uniscribe USP10!FillAlternatesList Buffer Overflow

Posted by deepcore under exploit (No Respond)

Microsoft Windows suffers from a uniscribe font processing buffer overflow vulnerability in USP10!FillAlternatesList.

Microsoft Windows Uniscribe Out-Of-Bounds / WIld Reads

Posted by deepcore under exploit (No Respond)

Microsoft Windows suffers from uniscribe font processing heap-based out-of-bounds and wild read vulnerabilities.

Microsoft GDI+ gdiplus!GetRECTSForPlayback Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Microsoft GDI+ suffers from an out-of-bounds read vulnerability in gdiplus!GetRECTSForPlayback.

Microsoft Color Management Module icm32!Fill_ushort_ELUTs_from_lut16Tag Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

The Microsoft Color Management module suffers from out-of-bounds read vulnerability in icm32!Fill_ushort_ELUTs_from_lut16Tag.

Microsoft Windows Uniscribe USP10!ScriptApplyLogicalWidth Out-Of-Bounds Read

Posted by deepcore under exploit (No Respond)

Microsoft Windows Uniscribe heap-based out-of-bounds read in USP10!ScriptApplyLogicalWidth, trigger via EMF.

Microsoft Windows Color Management Crash

Posted by deepcore under exploit (No Respond)

Microsoft Windows Color Management library suffers from a crash vulnerability.

Microsoft Internet Explorer textarea.defaultValue Memory Disclosure

Posted by deepcore under exploit (No Respond)

Microsoft Internet Explorer textarea.defaultValue suffers from a memory disclosure vulnerability.

QEMU User-To-Root Privilege Escalation

Posted by deepcore under exploit (No Respond)

QEMU suffers from a user-to-root privilege escalation vulnerability inside a VM due to bad translation caching.

SAP NetWeaver UMEADMIN 7.50 Directory Creation

Posted by deepcore under exploit (No Respond)

SAP NetWeaver UMEADMIN versions 7.00 through 7.50 suffer from a flaw where an authenticated user, via web administration, can trigger directory creation anywhere where the SAP OS user has access.