CVE-2010-1681: Buffer Overflow
Published May 5, 2010
·Updated
Buffer overflow in VISIODWG.DLL before 10.0.6880.4 in Microsoft Office Visio allows user-assisted remote attackers to execute arbitrary code via a crafted DXF file, a different vulnerability than CVE-2010-0254 and CVE-2010-0256.
Affected Software
4 affected components
Microsoft Visio=2002-sp2
Microsoft Visio=2003-sp3
Microsoft Visio=2007-sp1
Microsoft Visio=2007-sp2
Remediation
Patch Available
Event History
May 5, 2010
CVE Published
via MITRE·06:00 PM
Data Sourced
via MITRE·06:00 PM
Description
May 6, 2010
Data Sourced
via NVD·12:47 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2010-1681?
CVE-2010-1681 is classified as a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2010-1681?
To fix CVE-2010-1681, update Microsoft Office Visio to version 10.0.6880.4 or later.
3
Which versions of Microsoft Visio are affected by CVE-2010-1681?
CVE-2010-1681 affects Microsoft Visio versions 2002 SP2, 2003 SP3, 2007 SP1, and 2007 SP2.
4
What type of attack does CVE-2010-1681 enable?
CVE-2010-1681 enables user-assisted remote attackers to execute arbitrary code via a crafted DXF file.
5
Is CVE-2010-1681 related to other vulnerabilities?
Yes, CVE-2010-1681 is a different vulnerability than CVE-2010-0254 and CVE-2010-0256.