Microsoft Windows GDI+
cpe:2.3:a:microsoft:gdi+:*:*:*:*:*:*:*
A vulnerability allowing out-of-bounds read has been identified in Windows GDI+. This issue could enable an unauthorized attacker to disclose information over a network. The vulnerability arises when applications process metafiles, leading to a leak of memory values from the current process to the attacker.
Exploitation of this vulnerability could result in unauthorized information disclosure, with leaked memory values potentially containing sensitive data from the affected process.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.