This application requires Javascript for optimal performance.

MS.Windows.Mail.Client.Integer.Overflow

Release Date

May 14, 2010

Severity

critical

Impact

System compromise

Description

This indicates a possible attack against an integer-overflow vulnerability in Windows Live Mail and Outlook Express which if well exploited could lead to arbitrary remote code execution.

Affected Products

Microsoft Outlook Express 5.5 Service Pack 2
Microsoft Outlook Express 6 Service Pack 1
Windows Mail and Windows Live Mail on all Microsoft Windows Platforms

Recommended Actions

Please refer to the Microsoft advisory for updates or patches:
http://www.microsoft.com/technet/security/bulletin/ms10-030.mspx

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2010-0816

Reference/s

http://technet.microsoft.com/en-us/security/bulletin/ms10-030.mspx (MS-ID)

Reference: VID-22957