## https://sploitus.com/exploit?id=SAINT:0D5E6B5FD2A6D55DB607E0CAA6894200
Added: 11/16/2010
CVE: [CVE-2010-3333](<https://vulners.com/cve/CVE-2010-3333>)
BID: [44652](<http://www.securityfocus.com/bid/44652>)
OSVDB: [69085](<http://www.osvdb.org/69085>)
### Background
[Microsoft Office](<http://office.microsoft.com>) is a package which provides word processing, spreadsheet, presentation, e-mail, and calendaring capabilities for Microsoft Windows workstations.
### Problem
A stack buffer overflow vulnerability exists when Microsoft Word parses RTF documents. The vulnerability is due to lack of input validation when handling the values set for the `**pFragments**` property.
### Resolution
Apply the patch referenced in [Microsoft Security Bulletin 10-087](<http://www.microsoft.com/technet/security/bulletin/MS10-087.mspx>).
### References
<http://secunia.com/advisories/38521/>
### Limitations
Exploit works on Microsoft Office Word 2002 SP3, Word 2003 SP3, and Word 2007 SP2.
The user must open the exploit file in Microsoft Word on the target system.
### Platforms
Windows XP
Windows Vista