2024-05-26 14:27:05 +02:00
### [CVE-2019-1148](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2019-1148)
2024-06-07 04:52:01 +00:00








2024-05-26 14:27:05 +02:00



2024-06-07 04:52:01 +00:00




& color=blue)


& color=blue)

& color=blue)
& color=blue)


& color=blue)

& color=blue)

& color=blue)
2024-05-26 14:27:05 +02:00
& color=blue)
2024-06-07 04:52:01 +00:00






2024-05-26 14:27:05 +02:00

### Description
2024-06-07 04:52:01 +00:00
An information disclosure vulnerability exists when the Microsoft Windows Graphics Component improperly handles objects in memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user’ s system.To exploit this vulnerability, an attacker would have to log on to an affected system and run a specially crafted application.The update addresses the vulnerability by correcting the way in which the Windows Graphics Component handles objects in memory.
2024-05-26 14:27:05 +02:00
### POC
#### Reference
- http://packetstormsecurity.com/files/154084/Microsoft-Font-Subsetting-DLL-GetGlyphId-Out-Of-Bounds-Read.html
2024-06-09 00:33:16 +00:00
- http://packetstormsecurity.com/files/154084/Microsoft-Font-Subsetting-DLL-GetGlyphId-Out-Of-Bounds-Read.html
2024-05-26 14:27:05 +02:00
#### Github
No PoCs found on GitHub currently.