A buffer overflow vulnerability has been reported in Microsoft Outlook Express which could be exploited by an attacker to take complete control of the system.
Windows Address Book WAB is an application provided by Windows for storing contact information.
The vulnerability is caused due to a buffer overflow error in Windows Address Book within Outlook Express.
The attacker could exploit this vulnerability by creating and sending specially crafted WAB file to vulnerable system. Successful exploitation allow an attacker to take complete control of the system.
It may be noted that successful exploitation require the user of the affected system to be logged in with administrative privileges.
The information provided herein is on "as is" basis, without warranty of any kind.