A vulnerability has been identified in Microsoft Windows, which could be exploited by remote attackers to execute arbitrary commands. This flaw is due to a heap overflow error in the "MTX_LZCOMP_UnPackMemory" function of "T2EMBED.DLL" when uncompressing Embedded Open Type (EOT) Web fonts, which could be exploited by remote attackers to compromise a vulnerable system by convincing a user to visit a malicious Web site or view a specially crafted e-mail message.