CVE-2014-6362: Use After Free
Use-after-free vulnerability in Microsoft Office 2007 SP3, 2010 SP2, and 2013 Gold and SP1 allows remote attackers to bypass the ASLR protection mechanism via a crafted document, aka "Microsoft Office Component Use After Free Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-6362?
CVE-2014-6362 has a critical severity rating due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2014-6362?
To fix CVE-2014-6362, ensure that you apply the latest security updates provided by Microsoft for the affected Office versions.
Which Microsoft Office versions are affected by CVE-2014-6362?
CVE-2014-6362 affects Microsoft Office 2007 SP3, 2010 SP2, and 2013, including the SP1 update.
What type of vulnerability is CVE-2014-6362?
CVE-2014-6362 is a use-after-free vulnerability that can exploit memory management flaws in Microsoft Office.
Can CVE-2014-6362 affect my system through email attachments?
Yes, CVE-2014-6362 can be exploited through specially crafted documents attached to emails, making it a significant risk.