CISA Known Exploited Vulnerability

CVE-2010-3333

Microsoft · Office

Microsoft Office Stack-based Buffer Overflow Vulnerability

Date added
BOD 22-01 due date
CWE CWE-119
Ransomware Unknown

CISA description

A stack-based buffer overflow vulnerability exists in the parsing of RTF data in Microsoft Office and earlier allows an attacker to perform remote code execution.

Required action

Apply updates per vendor instructions.