Microsoft Visio 'DXF' File Insertion Buffer Overflow Vulnerability

  Severity: HIGH
  CVE Identifier: CVE-2010-1681
  Advisory Date: JUL 21, 2015

  DESCRIPTION

Buffer overflow in VISIODWG.DLL before 10.0.6880.4 in Microsoft Office Visio allows user-assisted remote attackers to execute arbitrary code via a crafted DXF file, a different vulnerability than CVE-2010-0254 and CVE-2010-0256.

  TREND MICRO PROTECTION INFORMATION

Apply associated Trend Micro DPI Rules.

  SOLUTION

  Trend Micro Deep Security DPI Rule Number: 1004145
  Trend Micro Deep Security DPI Rule Name: 1004145 - Microsoft Visio 'DXF' File Insertion Buffer Overflow

  AFFECTED SOFTWARE AND VERSION

  • microsoft visio 2002
  • microsoft visio 2003
  • microsoft visio 2007