RULE(RULE ID:307030)

Rule General Information
Release Date: 2015-12-11
Rule Name: Microsoft Internet Explorer Htmldlghelper Memory Corruption Vulnerability (CVE-2010-3329)
Severity:
CVE ID:
Rule Protection Details
Description: mshtmled.dll in Microsoft Internet Explorer 7 and 8 allows remote attackers to execute arbitrary code via a crafted Microsoft Office document that causes the HtmlDlgHelper class destructor to access uninitialized memory, aka "Uninitialized Memory Corruption Vulnerability."
Impact: An attacker can execute arbitrary code in the context of the vulnerable system. Failed exploit may cause denial-of-service attack.
Affected OS: Windows
Reference: http://www.microsoft.com/technet/security/Bulletin/MS10-071.mspx
SecurityFocusBID:43706
Solutions
Microsoft has released a patch MS10-071 to eliminate the vulnerability. The patch can be downloaded at http://www.microsoft.com/technet/security/Bulletin/MS10-071.mspx