Blog | G5 Cyber Security

Patch now against funky font flaws in Microsoft Windows, IE and Office

Microsoft has released seven security bulletins, addressing over 30 vulnerabilities in Windows and other Microsoft software. One of the flaws is a vulnerability discovered by Google security researcher Tavis Ormandy, and dubbed CVE-2013-3660. The vulnerability could be abused by malicious hackers who could embed boobytrapped fonts into files, and install a Trojan horse onto unprotected computers without the knowledge of users. Microsoft is aware of targeted attacks that attempt to exploit this vulnerability as an elevation of privilege vulnerability.”]

Source: https://grahamcluley.com/microsoft-patches-windows-internet-explorer-and-office-against-funky-font-security-flaws/

Exit mobile version