This article was published on July 20, 2015

Microsoft releases critical security update for all versions of Windows


Windows Debuts New 8.1 Operation System

MIAMI, FL – OCTOBER 17: Microsoft Product Advisor Daniela Belevanon (R) points out the functions on a Windows Surface tablet as she helps Marta Aranda shop for a tablet loaded with the Windows 8.1 operating system at a Microsoft store in the Dadeland Mall October 17, 2013 in Miami, Florida. The update was released a […]

Image Credits Credit: Joe Raedle

If you’re on Windows, it’s time for an update. There’s an out-of-band update for all currently supported versions of Windows that patches a flaw allowing remote access and code execution.

While we don’t know how many have been affected by the flaw, it is serious. From Microsoft’s security update post:

This security update resolves a vulnerability in Microsoft Windows. The vulnerability could allow remote code execution if a user opens a specially crafted document or visits an untrusted webpage that contains embedded OpenType fonts.

The post goes on to say “the security update addresses the vulnerability by correcting how the Windows Adobe Type Manager Library handles OpenType fonts.”

OpenType is a format for scalable fonts, and was developed by Adobe and Microsoft. The fonts are available for free, making them attractive for Web designers to use and hackers to target.

Vulnerability in Microsoft Font Driver Could Allow Remote Code Execution [Microsoft]

Read next: HTTPS security flaw FREAK plagues Windows too

Get the TNW newsletter

Get the most important tech news in your inbox each week.

Also tagged with