Integer Overflow in PICT Image Converter for Microsoft Office Products
CVE-2010-3946

Currently unrated

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
16 December 2010

Summary

An integer overflow flaw exists in the PICT image converter within the graphics filters of Microsoft Office. This vulnerability can be exploited by remote attackers through specially crafted PICT images embedded in Office documents. When these documents are processed by vulnerable versions of Microsoft Office XP SP3 or Office 2003 SP3, it could result in arbitrary code execution, compromising the affected system's integrity and potentially allowing unauthorized actions. Security updates are available to mitigate this issue.

References

EPSS Score

64% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.