Microsoft Office PICT Filter Parsing Remote Heap Buffer Overflow Vulnerability

Microsoft Office is prone to a remote heap-based buffer-overflow vulnerability because the software fails to perform adequate boundary-checks on user-supplied data.

An attacker could exploit this issue by enticing a victim to open a malicious PICT file.

Successfully exploiting this issue would allow the attacker to corrupt memory and execute arbitrary code in the context of the currently logged-in user. Failed exploit attempts will result in a denial-of-service condition.


 

Privacy Statement
Copyright 2010, SecurityFocus