Microsoft Windows Explorer on Windows 2000 SP4 FR and XP SP2 FR, and possibly other versions and platforms, allows remote attackers to cause a denial of service (memory corruption and crash) via an Office file with crafted document summary information, which causes an error in Ole32.dll.
https://www.exploit-db.com/exploits/3419
http://www.securitytracker.com/id?1017736
http://www.securityfocus.com/bid/22847
http://www.kb.cert.org/vuls/id/194944
http://lostmon.blogspot.com/2007/08/windows-extended-file-attributes-buffer.html