Microsoft Office Memory Corruption Vulnerability (CVE-2016-0127) (MS16-042)
Microsoft Office Memory Corruption Vulnerability (CVE-2016-0127) (MS16-042)
Release date:
Updated on:
Affected Systems:
Microsoft Office 2013 RT
Microsoft Office 2013
Microsoft Office 2010
Microsoft Office 2007
Description:
CVE (CAN) ID: CVE-2016-0127
Microsoft Office is a Windows-based Office software package developed by Microsoft.
Microsoft Office does not properly process memory objects in some cases. Multiple Remote Code Execution Vulnerabilities exist. Attackers can execute arbitrary code in the context of the current user.
<* Source: Lucas Leong
Link: http://technet.microsoft.com/security/bulletin/MS16-042
*>
Suggestion:
Vendor patch:
Microsoft
---------
Microsoft has released a Security Bulletin (MS16-042) and patches for this:
MS16-042: Security Update for Microsoft Office-Critical (1, 3148775)
Link: http://technet.microsoft.com/security/bulletin/MS16-042
This article permanently updates the link address: