Windows olecnv32.dll remote code execution vulnerability
A remote code execution vulnerability exists when Microsoft Windows OLE fails to properly validate user input. An attacker could exploit the vulnerability to execute malicious code.
To exploit the vulnerability, an attacker would have to convince a user to open either a specially crafted file or a program from either a webpage or an email message.
The update addresses the vulnerability by correcting how Windows OLE validates user input.
The following table contains links to the standard entry for each vulnerability in the Common Vulnerabilities and Exposures list:
Vulnerability title |
CVE number |
Publicly disclosed |
Exploited |
Windows olecnv32.dll Remote Code Execution Vulnerability |
Yes |
Yes |
Mitigating Factors
Microsoft has not identified any mitigating factors for this vulnerability.