Microsoft OneNote 2010 SP1 does not properly determine buffer sizes during memory allocation, which allows remote attackers to obtain sensitive information via a crafted OneNote file, aka "Buffer Size Validation Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.342
EPSS Ranking 96.9%