MS12-075 as I tweeted before remote r0 in font parsing! #PatchTuesday
-
-
Replying to @NTarakanov
@NTarakanov that's a good one for local EoP but we weren't able to trigger it as remote root. Mentioned that here: http://blogs.technet.com/b/srd/archive/2012/11/13/assessing-risk-for-the-november-2012-security-updates.aspx …2 replies 1 retweet 0 likes -
Replying to @NTarakanov
@NTarakanov yep, font cases are a bummer. In this particular case, we couldn't actually get to the vulnerable code using remote vectors.1 reply 0 retweets 0 likes -
Replying to @NTarakanov
@NTarakanov we tried Win8 PDF Reader and Office docs. If you come up with a way to even trigger vuln (not exploit), I'll rev the blog. :)2 replies 0 retweets 1 like
@NTarakanov @jness You can get it through OTS, or you're just guessing? OTS is strict about font structure http://code.google.com/p/ots/
-
-
Replying to @taviso0 replies 0 retweets 0 likesThanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.