Executive brief
A buffer underflow vulnerability in the Adobe Type Manager Library (atmfd.dll) in Microsoft Windows allows remote attackers to execute arbitrary code. The issue occurs when the library improperly handles specially crafted OpenType fonts, leading to memory corruption.
Affected products
- Microsoft Windows Vista SP2
- Microsoft Windows Server 2008 SP2, R2 SP1
- Microsoft Windows 7 SP1
- Microsoft Windows 8 Gold
- Microsoft Windows 8.1 Gold
- Microsoft Windows Server 2012 Gold, R2
- Microsoft Windows RT Gold, 8.1
- Microsoft Windows 10 -
Timeline
- 2015-07-20: patched: Microsoft released security bulletin MS15-078 to address this issue.
- 2022-03-28: kev added: Added to CISA's Known Exploited Vulnerabilities Catalog.
- 2022-03-28: disclosed: NVD publication date.