G10-61r01
CVSS:
9.3 (AV:N/AC:M/Au:N/C:C/I:C/A:C)
False Positive:
f
Variants:
1
Year:
2010
Description
A buffer overflow vulnerability exists in Microsoft Office. The vulnerability is due to the way Microsoft Office handles FlashPix image files. An attacker can exploit this vulnerability by enticing a target user to insert a malicious FlashPix image file into an Office document. Successful exploitation would allow an attacker to execute arbitrary code in the security context of the logged in user. An unsuccessful attack could cause an abnormal termination of the affected product.
CVE
References
http://www.microsoft.com/technet/security/bulletin/MS10-087.mspx