CVE-2010-3221: Code Injection
Microsoft Word 2002 SP3 and 2003 SP3, Office 2004 for Mac, and Word Viewer do not properly handle a malformed record during parsing of a Word document, which allows remote attackers to execute arbitrary code via a crafted document that triggers memory corruption, aka "Word Parsing Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3221?
CVE-2010-3221 has a critical severity rating as it allows remote code execution on vulnerable systems.
How do I fix CVE-2010-3221?
To fix CVE-2010-3221, users should apply the latest security updates provided by Microsoft for the affected versions of Word and Office.
Which versions are affected by CVE-2010-3221?
CVE-2010-3221 affects Microsoft Word 2002 SP3, 2003 SP3, Office 2004 for Mac, and the Word Viewer.
What are the implications of CVE-2010-3221?
The implications of CVE-2010-3221 include the potential for attackers to execute arbitrary code on affected systems by exploiting a specially crafted document.
Is there a workaround for CVE-2010-3221?
A temporary workaround for CVE-2010-3221 is to avoid opening untrusted Word documents until the software can be updated.