A vulnerability has been identified in Microsoft Outlook and Microsoft Exchange, which could be exploited by remote attackers to execute arbitrary commands. This flaw is due to a buffer overflow error when decoding TNEF (Transport Neutral Encapsulation Format) MIME attachments, which could be exploited by remote attackers to take complete control of an affected system when a user opens or previews a specially crafted TNEF email message or when the Microsoft Exchange Server Information Store processes the malicious message.