The LZW stream decompression functionality in ORMELEMS.DLL in Microsoft Visio 2002 SP2, 2003 SP3, and 2007 SP2 allows remote attackers to execute arbitrary code via a Visio file with a malformed VisioDocument stream that triggers an exception handler that accesses an object that has not been fully initialized, which triggers memory corruption, aka "Visio Object Memory Corruption Vulnerability."
                
            Metrics
Affected Vendors & Products
References
        History
                    No history.
 MITRE
                        MITRE
                    Status: PUBLISHED
Assigner: microsoft
Published: 2011-02-10T15:00:00
Updated: 2024-08-06T21:43:14.586Z
Reserved: 2010-12-21T00:00:00
Link: CVE-2011-0092
 Vulnrichment
                        Vulnrichment
                    No data.
 NVD
                        NVD
                    Status : Deferred
Published: 2011-02-10T16:00:31.833
Modified: 2025-04-11T00:51:21.963
Link: CVE-2011-0092
 Redhat
                        Redhat
                    No data.