CVE-2017-8682: Input Validation
Windows graphics on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, Windows Server 2016, Microsoft Office Word Viewer, Microsoft Office 2007 Service Pack 3 , and Microsoft Office 2010 Service Pack 2 allows an attacker to execute remote code by the way it handles embedded fonts, aka "Win32k Graphics Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-8683.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8682?
CVE-2017-8682 has been rated as critical due to its potential to allow an attacker to execute arbitrary code.
How do I fix CVE-2017-8682?
To fix CVE-2017-8682, install the latest security updates provided by Microsoft for the affected versions.
What versions of Windows are affected by CVE-2017-8682?
CVE-2017-8682 affects multiple versions including Windows 7 SP1, Windows 8.1, Windows 10, and Windows Server 2016.
Is Microsoft Office impacted by CVE-2017-8682?
Yes, Microsoft Office products such as Office 2007 SP3 and Office 2010 SP2 are also impacted by CVE-2017-8682.
What types of attacks can CVE-2017-8682 facilitate?
CVE-2017-8682 can facilitate remote code execution attacks, allowing attackers to gain control over the affected system.