Windows Kernel ATMFD.DLL Off-By-X OOB Reads/Writes Relative To Operand Stack

Discussion in 'News Aggregator' started by Packet Storm, 21 Aug 2015.

  1. Packet Storm

    Packet Storm Guest

    The Type1/CFF CharString interpreter code in the Adobe Type Manager Font Driver (ATMFD.DLL) Windows kernel module does not perform nearly any verification that the operand stack is large enough to contain the required instruction operands, which can lead to up to "off-by-three" overreads and overwrites on the interpreter function stack.

    Continue reading...
     

Share This Page

Loading...