March 3, 2022 · Applied Cybernetics Group
CVE-2010-3333 — Microsoft Office
Microsoft Office Stack-based Buffer Overflow Vulnerability
- Added to KEV
2022-03-03- Federal due date
2022-03-24- Vendor
- Microsoft
- Product
- Office
- EPSS
- 99.9th percentile (score 0.938, as of
2026-06-08) - NVD CVSS v3.1
- —
- Ransomware use
- Unknown
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2010-3333
CISA short description
A stack-based buffer overflow vulnerability exists in the parsing of RTF data in Microsoft Office and earlier allows an attacker to perform remote code execution.
Required action
Apply updates per vendor instructions.