CVE-2015-2545: Microsoft Office Malformed EPS File Vulnerability
Microsoft Office allows remote attackers to execute arbitrary code via a crafted EPS image.
Other sources
Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted EPS image, aka "Microsoft Office Malformed EPS File Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2545?
CVE-2015-2545 is rated as critical due to its ability to allow remote code execution in vulnerable versions of Microsoft Office.
How do I fix CVE-2015-2545?
To fix CVE-2015-2545, ensure that you apply the latest security updates and patches provided by Microsoft for your version of Office.
What versions of Microsoft Office are affected by CVE-2015-2545?
CVE-2015-2545 affects Microsoft Office 2007 SP3, 2010 SP2, and 2013 SP1, as well as 2016 in certain configurations.
What type of attack is associated with CVE-2015-2545?
CVE-2015-2545 exploits a vulnerability related to the processing of crafted EPS images, potentially leading to arbitrary code execution.
Is there a workaround for CVE-2015-2545?
While updating is the best solution, users can reduce risk by avoiding opening unsolicited EPS files until patches are applied.