SB2019071011 - Multiple vulnerabilities in Windows GDI
Published: July 10, 2019
Breakdown by Severity
- Low
- Medium
- High
- Critical
Description
This security bulletin contains information about 7 secuirty vulnerabilities.
1) Out-of-bounds read (CVE-ID: CVE-2019-1094)
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component when building an EMFPlus object while parsing a PPTX file in "ConvertToEMFPlus" method. A remote attacker can use a specially crafted PPTX file to trigger out-of-bounds read error and read contents of memory on the system.
2) Out-of-bounds read (CVE-ID: CVE-2019-1095)
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component when parsing font files in "DirectWrite" method in the DirectWrite library. A local user can use a specially crafted application to trigger out-of-bounds read error and read contents of memory on the system.
3) Out-of-bounds read (CVE-ID: CVE-2019-1098)
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component. A local user can use a specially crafted application to trigger out-of-bounds read error and read contents of memory on the system.
4) Out-of-bounds read (CVE-ID: CVE-2019-1099)
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component. A local user can use a specially crafted application to trigger out-of-bounds read error and read contents of memory on the system.
5) Out-of-bounds read (CVE-ID: CVE-2019-1100)
The vulnerability allows a local user to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component. A local user can use a specially crafted application to trigger out-of-bounds read error and read contents of memory on the system.
6) Out-of-bounds read (CVE-ID: CVE-2019-1101)
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component when parsing the EMF files by gdiplus.dll in "EMF Parsing" method. A remote attacker can use a specially crafted EMF file to trigger out-of-bounds read error and read contents of memory on the system.
7) Out-of-bounds read (CVE-ID: CVE-2019-1116)
The vulnerability allows a remote attacker to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition within the Windows GDI component when parsing font files in the gdiplus library. A remote attacker can use a specially crafted application to trigger out-of-bounds read error and read contents of memory on the system.
Remediation
Install update from vendor's website.
References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1094
- https://www.zerodayinitiative.com/advisories/ZDI-19-652/
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1095
- https://www.zerodayinitiative.com/advisories/ZDI-19-651/
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1098
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1099
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1100
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1101
- https://www.zerodayinitiative.com/advisories/ZDI-19-650/
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1116
- https://www.zerodayinitiative.com/advisories/ZDI-19-648/