The vulnerability in the BES software specifically lies in the PDF distiller piece of the BlackBerry Attachment service. The buffer overflow vulnerability affects the way that the software handles attachments and could result in either the service crashing or in remote code execution. The bug in BES does not directly affect BlackBerry devices, the company said. RIM issued fixes for all of the affected versions and also published a workaround for administrators who can t apply the patch immediately for whatever reason. The company said customers could address the issue by removing PDFs from the list of file types that the BlackBerry attachment service handles.
Source: https://threatpost.com/rim-issues-fix-remote-bug-blackberry-enterprise-server-011211/74842/