First published: Wed Dec 09 2015(Updated: )
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel for Mac 2011, Office Compatibility Pack SP3, and Excel Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office Excel | =2007-sp3 | |
Microsoft Excel | =2010-sp1 | |
Microsoft Office Excel | =2010-sp2 | |
Microsoft Excel | =2011 | |
Microsoft Office Excel Viewer | ||
Microsoft Office Compatibility Pack for Word, Excel, and PowerPoint | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-6122 has a critical severity level due to its potential for remote code execution through crafted Office documents.
To fix CVE-2015-6122, users should apply the security updates provided by Microsoft for the affected versions of Excel and Office products.
CVE-2015-6122 affects Microsoft Excel 2007 SP3, 2010 SP2, Excel for Mac 2011, the Office Compatibility Pack SP3, and Excel Viewer.
CVE-2015-6122 can be exploited by remote attackers through maliciously crafted Office documents to execute arbitrary code.
It is recommended to avoid opening untrusted documents and to ensure all software is updated to the latest security patches to mitigate CVE-2015-6122.