A remote code execution vulnerability exists when the Windows font library handles specially crafted embedded fonts incorrectly. An attacker who successfully exploits this vulnerability could take control of the affected system.
To learn more about the vulnerability, go to CVE-2018-8332.
How to obtain and install the update
Method 1: Windows Update
Method 2: Microsoft Update Catalog
- If you install a language pack after you install this update, you must reinstall this update. Therefore, we recommend that you install any language packs that you need before you install this update. For more information, see Add language packs to Windows.
The English (United States) version of this software update installs files that have the attributes that are listed in the following tables. The dates and the times for these files are listed in Coordinated Universal Time (UTC). The dates and the times for these files on your local computer are displayed in your local time together with your current daylight saving time (DST) bias. Additionally, the dates and the times may change when you perform certain operations on the files.