Microsoft Office Publisher Remote Code Execution Vulnerability (969516)

Summary
This host is missing a critical security update according to Microsoft Bulletin MS09-030.
Impact
Successful exploitation could execute arbitrary code on the remote system via a specially crafted Publisher file. Impact Level: Application
Solution
Run Windows Update and update the listed hotfixes or download and update mentioned hotfixes in the advisory from the below link. http://www.microsoft.com/technet/security/bulletin/ms09-030.mspx
Insight
The flaw is due to error in calculating object handler data when opening files created in older versions of Publisher. This can be exploited to corrupt memory and cause an invalid value to be dereferenced as a pointer.
Affected
Microsoft Office 2007 SP1 and prior Microsoft Office Publisher 2007 SP1 and prior
References