MS.OpenType.Font.Parsing.Overflow

description-logoDescription

This indicates a possible attack against a vulnerability in the MS OpenType Font format driver.
The vulnerability is caused by the vulnerable software's inability to properly handle malformed user-supplied font. A successful exploit may lead to arbitrary code execution.

affected-products-logoAffected Products

Windows XP Service Pack 3
Windows XP Professional x64 Edition Service Pack 2
Windows Server 2003 Service Pack 2
Windows Server 2003 x64 Edition Service Pack 2
Windows Server 2003 with SP2 for Itanium-based Systems

Impact logoImpact

System compromise

recomended-action-logoRecommended Actions

Apply the patch supplied by the vendor:
http://www.microsoft.com/technet/security/bulletin/ms10-078.mspx

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)