Windows WMF Vulnerability
From US-CERT: Microsoft Windows is vulnerable to remote code execution via an error in handling files using the Windows Metafile image format. Exploit code has been publicly posted and used to successfully attack fully-patched Windows XP SP2 systems. However, other versions of the Windows operating system may be at risk as well.
Internet Storm Center (ISC) FAQ: http://isc.sans.org/diary.php?storyid=994US-CERT Note: http://www.kb.cert.org/vuls/id/181038