A security vulnerability existed in the anti-virus engine of specific versions of ZoneAlarm Anti-Virus and ZoneAlarm Security Suite (ZoneAlarm and ZoneAlarm Pro are not affected.) The vulnerability was caused due to an integer overflow in the Vet anti-virus engine (VetE.dll) when analyzing OLE streams. This can be exploited to cause a heap-based buffer overflow via a specially crafted Microsoft Office document.
You can download this advisory from the following link: https://packetstormsecurity.com/files/download/39319/zlaveOLE.txt
Source: https://packetstormsecurity.com/files/39319/zlaveOLE.txt.html

