CVE-2015-2477: Buffer Overflow
Published Aug 15, 2015
·Updated
Microsoft Office 2007 SP3, Office for Mac 2011, Office for Mac 2016, and Word Viewer allow remote attackers to execute arbitrary code via a crafted document, aka "Microsoft Office Memory Corruption Vulnerability."
Affected Software
4 affected components
Microsoft Office=2007-sp3
Microsoft Office=2011
Microsoft Office=2016
Microsoft Word Viewer
Event History
Aug 15, 2015
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-2477?
CVE-2015-2477 has a critical severity rating due to its potential to allow remote code execution.
2
How do I fix CVE-2015-2477?
To remediate CVE-2015-2477, apply the latest security patches and updates provided by Microsoft for the affected Office versions.
3
Which versions of Microsoft Office are affected by CVE-2015-2477?
CVE-2015-2477 affects Microsoft Office 2007 SP3, Office for Mac 2011, Office for Mac 2016, and Word Viewer.
4
What type of attack does CVE-2015-2477 facilitate?
CVE-2015-2477 allows attackers to execute arbitrary code on the target system through crafted documents.
5
Can CVE-2015-2477 be exploited without user interaction?
Yes, CVE-2015-2477 can be exploited automatically when a user opens a malicious document.