CVE-2016-0120
Microsoft Windows Kernel - 'ATMFD.dll' OTF Font Processing Stack Corruption (MS16-026)
Severity Score
Exploit Likelihood
Affected Versions
10Public Exploits
2Exploited in Wild
-Decision
Descriptions
The Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows remote attackers to cause a denial of service (system hang) via a crafted OpenType font, aka "OpenType Font Parsing Vulnerability."
Adobe Type Manager Library en Microsoft Windows Vista SP2, Windows Server 2008 SP2 y R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold y R2, Windows RT 8.1 y Windows 10 Gold y 1511 permite a atacantes remotos causar una denegación de servicio (cuelgue del sistema) a través de una fuente OpenType manipulada, también conocida como "OpenType Font Parsing Vulnerability".
There is a Windows kernel crash in the ATMFD.DLL OpenType driver while processing a corrupted OTF font file.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2015-12-04 CVE Reserved
- 2016-03-09 CVE Published
- 2016-03-17 First Exploit
- 2024-08-05 CVE Updated
- 2025-03-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-20: Improper Input Validation
CAPEC
References (5)
URL | Date | SRC |
---|