"Microsoft Word Font Parsing Buffer Overflow Vulnerability
Lord Yup has reported a vulnerability in Microsoft Word, which can be
exploited by malicious people to compromise a user's system.
The vulnerability is caused due to a boundary error within the
parsing of fonts. This can be exploited to cause a stack-based buffer
overflow by tricking a user into opening a specially crafted Word
document.
Successful exploitation allows execution of arbitrary code."
Secunia Advisory
==============
"Microsoft Windows Color Management Module Buffer Overflow
A vulnerability has been reported in Microsoft Windows, which can be
exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to a boundary error within the color
management module when validating ICC profile format tags. This can
be exploited to cause a buffer overflow by e.g. tricking a user into
visiting a malicious web site or view a malicious e-mail message
containing a specially crafted image file.
Successful exploitation allows execution of arbitrary code."
Secunia Advisory
Lord Yup has reported a vulnerability in Microsoft Word, which can be
exploited by malicious people to compromise a user's system.
The vulnerability is caused due to a boundary error within the
parsing of fonts. This can be exploited to cause a stack-based buffer
overflow by tricking a user into opening a specially crafted Word
document.
Successful exploitation allows execution of arbitrary code."
Secunia Advisory
==============
"Microsoft Windows Color Management Module Buffer Overflow
A vulnerability has been reported in Microsoft Windows, which can be
exploited by malicious people to compromise a vulnerable system.
The vulnerability is caused due to a boundary error within the color
management module when validating ICC profile format tags. This can
be exploited to cause a buffer overflow by e.g. tricking a user into
visiting a malicious web site or view a malicious e-mail message
containing a specially crafted image file.
Successful exploitation allows execution of arbitrary code."
Secunia Advisory