First published: Wed Oct 14 2015(Updated: )
Buffer overflow in Microsoft Visio 2007 SP3 and 2010 SP2 allows remote attackers to execute arbitrary code via crafted UML data in an Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Visio Standard | =2007-sp3 | |
Microsoft Visio Standard | =2010-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2557 has a critical severity rating due to its potential to allow remote code execution.
To fix CVE-2015-2557, it is essential to apply the security updates provided by Microsoft for affected versions of Visio.
CVE-2015-2557 affects Microsoft Visio 2007 SP3 and 2010 SP2.
CVE-2015-2557 is a buffer overflow vulnerability that can lead to memory corruption.
Yes, CVE-2015-2557 can be exploited remotely through crafted UML data in an Office document.