Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2009-1217

Off-by-one error in the GpFont::SetData function in gdiplus.dll in Microsoft GDI+ on Windows XP allows remote attackers to cause a denial of service (stack corruption and application termination) via a crafted EMF file that triggers an integer overflow, as demonstrated by voltage-exploit.emf, aka the "Microsoft GdiPlus EMF GpFont.SetData integer overflow."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.462
EPSS Ranking 97.6%
CVSS Severity
CVSS v2 Score 4.3
Products affected by CVE-2009-1217


Contact Us

Shodan ® - All rights reserved