First published: Wed Apr 12 2017(Updated: )
The Adobe Type Manager Font Driver (ATMFD.dll) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold , 1511, 1607, and 1703 allows an attacker to gain sensitive information via a specially crafted document or an untrusted website, aka "ATMFD.dll Information Disclosure Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Windows 10 | ||
Windows 10 | =1511 | |
Windows 10 | =1607 | |
Windows 10 | =1703 | |
Microsoft Windows 7 | =sp1 | |
Microsoft Windows | ||
Microsoft Windows RT | ||
Microsoft Windows Server | =sp2 | |
Microsoft Windows Server | =r2-sp1 | |
Microsoft Windows Server | ||
Microsoft Windows Server | =r2 | |
Microsoft Windows Server 2016 | ||
Microsoft Windows Vista | =sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-0192 has been rated as critical due to its potential to allow attackers to gain sensitive information.
To fix CVE-2017-0192, apply the latest security patches available from Microsoft for affected Windows versions.
CVE-2017-0192 affects Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8.1, Windows 10 versions 1511, 1607, 1703, and various Windows Server editions.
CVE-2017-0192 enables attackers to gain sensitive information through the exploitation of font handling in the Adobe Type Manager Font Driver.
While a specific workaround details are not provided, it is generally recommended to limit access to vulnerable systems until a patch is applied.