First published: Thu Dec 16 2010(Updated: )
Buffer overflow in the CGM image converter in the graphics filters in Microsoft Office XP SP3, Office 2003 SP3, and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted CGM image in an Office document, aka "CGM Image Converter Buffer Overrun Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Converter Pack | ||
Microsoft Office | =xp-sp3 | |
Microsoft Office | =2003-sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2010-3945 is classified as a high severity vulnerability due to potential for remote code execution.
To fix CVE-2010-3945, you should apply the latest security updates provided by Microsoft for the affected Office versions.
CVE-2010-3945 affects Microsoft Office XP SP3, Office 2003 SP3, and the Microsoft Office Converter Pack.
Exploitation of CVE-2010-3945 could allow attackers to execute arbitrary code on the victim's system.
Yes, CVE-2010-3945 can be exploited via malicious CGM images embedded in Office documents.