Integer Overflow in PICT Image Converter for Microsoft Office Products
CVE-2010-3946
Currently unrated
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 16 December 2010
Summary
An integer overflow flaw exists in the PICT image converter within the graphics filters of Microsoft Office. This vulnerability can be exploited by remote attackers through specially crafted PICT images embedded in Office documents. When these documents are processed by vulnerable versions of Microsoft Office XP SP3 or Office 2003 SP3, it could result in arbitrary code execution, compromising the affected system's integrity and potentially allowing unauthorized actions. Security updates are available to mitigate this issue.
References
EPSS Score
64% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved