Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally.
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Microsoft Office for Android | 16.0.1, 16.0.1, 16.0.0, 16.108.26041219 |
Downstream vendors/products affected by this vulnerability
| Vendor | Product | Source | Confidence |
|---|---|---|---|
| microsoft | microsoft office ltsc for mac | mitre_affected | 90% |
Updated severity to CRITICAL, added new affected version 16.108.26041219, and noted that no exploit is available.
Updated severity to CRITICAL, set patchAvailable to null, and added new tag 'Remote Code Execution'.
Added a detailed description of the vulnerability and marked it as actively exploited with an available exploit.
Initial creation