Junglewise Threat Intelligence

CVE-2015-2426: Microsoft Windows Adobe Type Manager Library Remote Code Execution Vulnerability

CVE-2015-2426 · Severity: critical · CVSS 8.8 · Exploited in the wild · Published 2022-03-28

Technologies: Microsoft Windows Server 2008, Microsoft Windows Vista, Microsoft Windows 8.1, Microsoft Windows, Microsoft Windows 10, Microsoft Windows Server 2012, Microsoft Windows 7. Vendors: Microsoft.

Executive brief

A buffer underflow vulnerability in the Adobe Type Manager Library (atmfd.dll) in Microsoft Windows allows remote attackers to execute arbitrary code. The issue occurs when the library improperly handles specially crafted OpenType fonts, leading to memory corruption.

Affected products

  • Microsoft Windows Vista SP2
  • Microsoft Windows Server 2008 SP2, R2 SP1
  • Microsoft Windows 7 SP1
  • Microsoft Windows 8 Gold
  • Microsoft Windows 8.1 Gold
  • Microsoft Windows Server 2012 Gold, R2
  • Microsoft Windows RT Gold, 8.1
  • Microsoft Windows 10 -

Timeline

  • 2015-07-20: patched: Microsoft released security bulletin MS15-078 to address this issue.
  • 2022-03-28: kev added: Added to CISA's Known Exploited Vulnerabilities Catalog.
  • 2022-03-28: disclosed: NVD publication date.

Related threats