← Back to browse · API

CVE-2015-2387

Severity
HIGH
CVSS
7.8
EPSS
0.3512
Risk score
68.49
CISA KEV
Yes
PoC
No
Published
2015-07-14
Modified
2025-10-21
First seen
2026-08-07
Aliases
EUVD-2015-2480, GHSA-35F2-76RG-H8VQ
Products
Microsoft:ATM Font Driver, n/a:n/a n/a
Sources
cisa.gov CVE-2015-2387
euvd EUVD-2015-2480

Description

ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, and Windows RT Gold and 8.1 allows local users to gain privileges via a crafted application, aka "ATMFD.DLL Memory Corruption Vulnerability."

References