This post has been republished via RSS; it originally appeared at: MSRC Security Update Guide.
Concurrent execution using shared resource with improper synchronization ('race condition') in Inbox COM Objects allows an unauthorized attacker to execute code locally.