CVE-2016-0010: Buffer Overflow
Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2013 RT SP1, Office 2016, Excel for Mac 2011, PowerPoint for Mac 2011, Word for Mac 2011, Excel 2016 for Mac, PowerPoint 2016 for Mac, Word 2016 for Mac, and Word Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0010?
CVE-2016-0010 is classified as a critical vulnerability that allows remote attackers to execute arbitrary code.
How do I fix CVE-2016-0010?
To fix CVE-2016-0010, users should apply the latest security updates provided by Microsoft for the affected Office products.
Which versions of Microsoft Office are affected by CVE-2016-0010?
CVE-2016-0010 affects Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office 2016, as well as several versions of Excel, Word, and PowerPoint for Mac.
Can CVE-2016-0010 be exploited without user interaction?
Yes, CVE-2016-0010 can potentially be exploited without user interaction if a victim opens a specially crafted file.
Is it necessary to uninstall Microsoft Office to resolve CVE-2016-0010?
No, it is not necessary to uninstall Microsoft Office; simply updating to the latest patched version is sufficient to mitigate the risk.