Graphics Device Interface (aka GDI or GDI+) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; Office 2007 SP3; Office 2010 SP2; Word Viewer; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2010 Attendee; and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted embedded font, aka GDI+ Remote Code Execution Vulnerability.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Live_meeting | Microsoft | 2007 (including) | 2007 (including) |
Lync | Microsoft | 2010 (including) | 2010 (including) |
Lync | Microsoft | 2013-sp1 (including) | 2013-sp1 (including) |
Office | Microsoft | 2007-sp3 (including) | 2007-sp3 (including) |
Office | Microsoft | 2010-sp2 (including) | 2010-sp2 (including) |
Skype_for_business | Microsoft | 2016 (including) | 2016 (including) |
Word_viewer | Microsoft | - (including) | - (including) |
Windows_10 | Microsoft | - (including) | - (including) |
Windows_10 | Microsoft | 1511 (including) | 1511 (including) |
Windows_10 | Microsoft | 1607 (including) | 1607 (including) |
Windows_7 | Microsoft | –sp1 (including) | –sp1 (including) |
Windows_8.1 | Microsoft | * | * |
Windows_rt_8.1 | Microsoft | - (including) | - (including) |
Windows_server_2008 | Microsoft | –sp2 (including) | –sp2 (including) |
Windows_server_2008 | Microsoft | r2-sp1 (including) | r2-sp1 (including) |
Windows_server_2012 | Microsoft | - (including) | - (including) |
Windows_server_2012 | Microsoft | r2 (including) | r2 (including) |
Windows_vista | Microsoft | –sp2 (including) | –sp2 (including) |