CVE-2014-4148CISA KEV
Microsoft Windows Remote Code Execution Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
A remote code execution vulnerability exists when the Windows kernel-mode driver improperly handles TrueType fonts.
- Product
- Windows
- Added to KEV
- 25 May 2022
- Federal remediation due
- 15 Jun 2022
- Known ransomware use
- Not reported