Attaching a Vcard attachment executes code due to an EIP command being 4 bytes ahead of the EAX command in the code. The consequences accomplish a task of 1000s of Windows worms in the wild.
The vulnerability is not new, but has not been patched by most, though the patch is out there at MS.