← Back to browse · API

CVE-2013-3894

Severity
HIGH
CVSS
8.1
EPSS
0.43101
Risk score
47.49
CISA KEV
No
PoC
No
Published
2013-10-09
Modified
2025-01-16
First seen
2026-08-07
Aliases
EUVD-2013-3826, GHSA-VRRW-M6QM-J235
Products
n/a:n/a n/a
Sources
euvd EUVD-2013-3826

Description

The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows Server 2012, and Windows RT allow remote attackers to execute arbitrary code via a crafted CMAP table in a TrueType font (TTF) file, aka "TrueType Font CMAP Table Vulnerability."

References