Buffer overflow in Windows and Windows Server - CVE-2018-1008
Published: April 10, 2018 / Updated: April 10, 2018
Windows
Windows Server
Detailed vulnerability description
The vulnerability allows a local user to elevate privileges on the system.
The vulnerability exists due to boundary error in Windows Adobe Type Manager Font Driver (ATMFD.dll). A local user can run a specially crafted application to trigger memory corruption and execute arbitrary code on the target system with elevated privileges.