First published: Wed Aug 15 2012(Updated: )
Buffer overflow in Microsoft Visio 2010 SP1 and Visio Viewer 2010 SP1 allows remote attackers to execute arbitrary code via a crafted Visio file, aka "Visio DXF File Format Buffer Overflow Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Visio Standard | =2010-sp1 | |
Microsoft Visio Standard | =2010-sp1 | |
Microsoft Visio Viewer 2016 | =2010-sp1 | |
Microsoft Visio Viewer 2016 | =2010-sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-1888 is classified as a critical vulnerability due to the potential for remote code execution.
To fix CVE-2012-1888, users should apply the security update provided by Microsoft for Visio 2010 SP1 and Visio Viewer 2010 SP1.
CVE-2012-1888 affects Microsoft Visio Professional 2010 SP1 and Microsoft Visio Viewer 2010 SP1 in both x86 and x64 architectures.
Yes, CVE-2012-1888 can be exploited by sending a crafted Visio file through email as an attachment.
Exploitation of CVE-2012-1888 can lead to arbitrary code execution, allowing attackers to gain complete control over the affected system.