RULE(RULE ID:316805)

Rule General Information
Release Date: 2016-10-31
Rule Name: Adobe Type Manager Font Driver Atmfd.dll Privilege Escalation Vulnerability -1 (CVE-2016-3220)
Severity:
CVE ID:
Rule Protection Details
Description: atmfd.dll in the Adobe Type Manager Font Driver in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, and Windows 10 Gold and 1511 allows local users to gain privileges via a crafted application, aka "ATMFD.dll Elevation of Privilege Vulnerability."
Impact: An attacker can abtain more privileges which he is not entitled to by exloiting the vulnerability, such as executing arbitrary code, deleting files, viewing sensitive information, changing configurations.
Affected OS: Windows
Reference: MicrosoftSecurityBulletin:MS16-074
SecurityTrackerID:1036101
ExploitDB:39991
Solutions
Microsoft has released a patch MS16-074 to eliminate the vulnerability. The patch can be downloaded at http://technet.microsoft.com/security/bulletin/MS16-074