Lucene search

K
nvd[email protected]NVD:CVE-2015-2510
HistorySep 09, 2015 - 12:59 a.m.

CVE-2015-2510

2015-09-0900:59:23
CWE-119
web.nvd.nist.gov

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.6 High

AI Score

Confidence

Low

0.649 Medium

EPSS

Percentile

97.9%

Buffer overflow in the Adobe Type Manager Library in Microsoft Windows Vista SP2, Windows Server 2008 SP2, Office 2007 SP3, Office 2010 SP2, Lync 2010, Lync 2010 Attendee, Lync 2013 SP1, Lync Basic 2013 SP1, and Live Meeting 2007 Console allows remote attackers to execute arbitrary code via a crafted OpenType font, aka “Graphics Component Buffer Overflow Vulnerability.”

Affected configurations

NVD
Node
microsoftlive_meeting_consoleMatch2007
OR
microsoftlyncMatch2010attendee
OR
microsoftlyncMatch2010x64
OR
microsoftlyncMatch2010x86
OR
microsoftlyncMatch2013sp1
OR
microsoftlyncMatch2013sp1basic
OR
microsoftofficeMatch2007sp3
OR
microsoftofficeMatch2010sp2
OR
microsoftwindows_server_2008sp2
OR
microsoftwindows_vistasp2

9.3 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

7.6 High

AI Score

Confidence

Low

0.649 Medium

EPSS

Percentile

97.9%