Buffer overflow in the DjVu ActiveX Control 3.0 for Microsoft Office (DjVu_ActiveX_MSOffice.dll) allows remote attackers to execute arbitrary code via a long (1) ImageURL property, and possibly the (2) Mode, (3) Page, or (4) Zoom properties.Referenceshttps://www.exploit-db.com/exploits/6878http://www.securityfocus.com/bid/31987http://securityreason.com/securityalert/4560https://exchange.xforce.ibmcloud.com/vulnerabilities/46214http://www.vupen.com/english/advisories/2008/2956