The 2012 Pwnie Nominee For Best Client-Side Bug

MS11-087: Unspecified win32k.sys TrueType font parsing engine vulnerability (CVE 2011-3402)

Credit: Duqu Authors

As seen in “Stuxnet 2: Electric Duquloo”, this 100% reliable kernel-mode remote code execution exploit could rootkit any version of Windows ever from a font file embedded in a web page or various other file formats. What else could you possibly want from a client-side vulnerability? A cookie?

(CVE 2011-3402)