Heap-based buffer overflow in Windows OLE allows an unauthorized attacker to execute code locally.
CVSS Metrics