CVE-2013-3181

Description

usp10.dll in the Unicode Scripts Processor in Microsoft Windows XP SP2 and SP3 and Windows Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted OpenType font, aka Uniscribe Font Parsing Engine Memory Corruption Vulnerability.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
44.472

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Security Update for Internet Explorer for Windows XP (KB2862772)Windows
Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB2862772)Windows
Cumulative Security Update for Internet Explorer for Windows XP x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer for Windows Server 2003 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 for Windows XP (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 for Windows XP x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 for Windows XP (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows 7 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 for Windows XP x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Vista x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows 7 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 R2 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows Vista (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows Server 2008 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows 7 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows Vista x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows Server 2008 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows 7 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 9 in Windows Server 2008 R2 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 10 in Windows 7 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 10 in Windows 8 (KB2862772)Windows
Cumulative Security Update for Internet Explorer 10 in Windows 7 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 10 in Windows Server 2008 R2 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 10 in Windows 8 x64 Edition (KB2862772)Windows
Cumulative Security Update for Internet Explorer 10 in Windows Server 2012 x64 Edition (KB2862772)Windows
Security Update for Windows XP (KB2850869)Windows
Security Update for Windows Server 2003 (KB2850869)Windows
Security Update for Windows XP x64 Edition (KB2850869)Windows
Security Update for Windows Server 2003 x64 Edition (KB2850869)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-14069Cumulative Security Update for Internet Explorer for Windows XP (KB2862772)
PATCH-14070Cumulative Security Update for Internet Explorer for Windows Server 2003 (KB2862772)
PATCH-14071Cumulative Security Update for Internet Explorer for Windows XP x64 Edition (KB2862772)
PATCH-14072Cumulative Security Update for Internet Explorer for Windows Server 2003 x64 Edition (KB2862772)
PATCH-14073Cumulative Security Update for Internet Explorer 7 for Windows XP (KB2862772)
PATCH-14074Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB2862772)
PATCH-14075Cumulative Security Update for Internet Explorer 7 in Windows Vista (KB2862772)
PATCH-14076Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 (KB2862772)
PATCH-14077Cumulative Security Update for Internet Explorer 7 for Windows XP x64 Edition (KB2862772)
PATCH-14078Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB2862772)
PATCH-14079Cumulative Security Update for Internet Explorer 7 in Windows Vista x64 Edition (KB2862772)
PATCH-14080Cumulative Security Update for Internet Explorer 7 in Windows Server 2008 x64 Edition (KB2862772)
PATCH-14081Cumulative Security Update for Internet Explorer 8 for Windows XP (KB2862772)
PATCH-14082Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 (KB2862772)
PATCH-14083Cumulative Security Update for Internet Explorer 8 in Windows Vista (KB2862772)
PATCH-14084Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 (KB2862772)
PATCH-14085Cumulative Security Update for Internet Explorer 8 in Windows 7 (KB2862772)
PATCH-14086Cumulative Security Update for Internet Explorer 8 for Windows XP x64 Edition (KB2862772)
PATCH-14087Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 x64 Edition (KB2862772)
PATCH-14088Cumulative Security Update for Internet Explorer 8 in Windows Vista x64 Edition (KB2862772)
PATCH-14089Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 x64 Edition (KB2862772)
PATCH-14090Cumulative Security Update for Internet Explorer 8 in Windows 7 x64 Edition (KB2862772)
PATCH-14091Cumulative Security Update for Internet Explorer 8 in Windows Server 2008 R2 x64 Edition (KB2862772)
PATCH-14092Cumulative Security Update for Internet Explorer 9 in Windows Vista (KB2862772)
PATCH-14094Cumulative Security Update for Internet Explorer 9 in Windows 7 (KB2862772)
PATCH-14095Cumulative Security Update for Internet Explorer 9 in Windows Vista x64 Edition (KB2862772)
PATCH-14096Cumulative Security Update for Internet Explorer 9 in Windows Server 2008 x64 Edition (KB2862772)
PATCH-14097Cumulative Security Update for Internet Explorer 9 in Windows 7 x64 Edition (KB2862772)
PATCH-14099Cumulative Security Update for Internet Explorer 10 in Windows 7 (KB2862772)
PATCH-14100Cumulative Security Update for Internet Explorer 10 in Windows 8 (KB2862772)
PATCH-14102Cumulative Security Update for Internet Explorer 10 in Windows Server 2008 R2 x64 Edition (KB2862772)
PATCH-14103Cumulative Security Update for Internet Explorer 10 in Windows 8 x64 Edition (KB2862772)
PATCH-14104Cumulative Security Update for Internet Explorer 10 in Windows Server 2012 x64 Edition (KB2862772)
PATCH-14111Security Update for Windows Server 2003 (KB2850869)
PATCH-14112Security Update for Windows XP x64 Edition (KB2850869)
PATCH-14113Security Update for Windows Server 2003 x64 Edition (KB2850869)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234