Object Linking and Embedding (OLE) Automation in Microsoft Windows XP SP3 does not properly allocate memory, which allows remote attackers to execute arbitrary code via a crafted RTF document, aka "OLE Automation Remote Code Execution Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.585
EPSS Ranking 98.1%