Microsoft Windows GDI+ Out-of-Bounds Read Vulnerability Allowing Information Disclosure

Vulnerability

A vulnerability allowing out-of-bounds read has been identified in Windows GDI+. This issue could enable an unauthorized attacker to disclose information over a network. The vulnerability arises when applications process metafiles, leading to a leak of memory values from the current process to the attacker.

Impact

Exploitation of this vulnerability could result in unauthorized information disclosure, with leaked memory values potentially containing sensitive data from the affected process.

Added: Mar 10, 2026, 7:26 PM
Updated: Mar 10, 2026, 7:26 PM

Vulnerability Rating

Custom Algorithm
spread
9.0
impact
2.5
exploitability
4.3
remediation
0.0
relevance
3.7
threat
0.0
urgency
2.9
incentive
0.0

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.