Microsoft OneNote contains a flaw that may lead to unauthorized disclosure of potentially sensitive information. The issue is triggered when allocating memory when validating buffer sizes during the handling of a specially crafted ONE file. This may allow a context-dependent attacker to gain access to potentially sensitive information.