IBM Lotus Symphony 3 before FP3 allows remote attackers to cause a denial of service (application crash) via the sample .doc document that incorporates a user-defined toolbar.
https://exchange.xforce.ibmcloud.com/vulnerabilities/68891
http://www.securityfocus.com/bid/48936