CVE-2010-3952: Buffer Overflow
The FlashPix image converter in the graphics filters in Microsoft Office XP SP3 and Office Converter Pack allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted FlashPix image in an Office document, aka "FlashPix Image Converter Heap Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3952?
CVE-2010-3952 has a high severity rating due to its potential to allow remote code execution or denial of service.
How do I fix CVE-2010-3952?
To fix CVE-2010-3952, update Microsoft Office XP SP3 and the Office Converter Pack to the latest versions.
What types of software are affected by CVE-2010-3952?
CVE-2010-3952 affects Microsoft Office XP SP3 and the Microsoft Office Converter Pack.
Can CVE-2010-3952 lead to data loss?
Yes, CVE-2010-3952 can potentially lead to data loss due to heap memory corruption.
What is the primary attack vector for CVE-2010-3952?
The primary attack vector for CVE-2010-3952 is a crafted FlashPix image embedded in an Office document.