CVE-2016-7256: Microsoft Windows Open Type Font Remote Code Execution Vulnerability
atmfd.dll in the Windows font library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 allows remote attackers to execute arbitrary code via a crafted web site, aka "Open Type Font Remote Code Execution Vulnerability."
Other sources
A remote code execution vulnerability exists when the Windows font library improperly handles specially crafted embedded fonts. An attacker who successfully exploits this vulnerability could take control of the affected system.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2016-7256?
CVE-2016-7256 is classified as a critical severity vulnerability due to the potential for remote code execution.
How do I fix CVE-2016-7256?
To mitigate CVE-2016-7256, apply the relevant security updates provided by Microsoft for the affected Windows versions.
What systems are affected by CVE-2016-7256?
CVE-2016-7256 affects various versions of Microsoft Windows including Vista, Server 2008, Windows 7, Windows 8.1, and multiple iterations of Windows 10.
Can CVE-2016-7256 be exploited remotely?
Yes, CVE-2016-7256 can be exploited remotely, allowing attackers to execute arbitrary code on affected systems.
What type of attacks are associated with CVE-2016-7256?
CVE-2016-7256 is primarily associated with remote code execution attacks, where an attacker may execute unauthorized commands on a vulnerable system.