Microsoft Graphics Component Information Disclosure (CVE-2017-0283)

An information disclosure vulnerability exists in Microsoft Graphics Component. The vulnerability is due to improper handling of objects in memory, allowing an attacker to retrieve information that could lead to an Address Space Layout Randomization (ASLR) bypass. An attacker could convince a user to open a specially crafted document to successfully exploit this vulnerability, causing an information disclosure on the effected system.

from Check Point Update Services Advisories http://ift.tt/2sMu4SW

No comments:

Post a Comment

Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL Sideloading

Cybersecurity researchers have uncovered a new phishing campaign that exploits social media private messages to propagate malicious payloads...