A vulnerability has been identified in Microsoft Outlook Express, which could be exploited by remote attackers to take complete control of an affected system. This flaw is due to a buffer overflow error in the Windows Address Book (WAB) functions that does not properly handle malformed files, which could be exploited by attackers to execute arbitrary commands by convincing a user to open a malicious ".wab" file.