CVE-2016-0056: Buffer Overflow
Published Feb 10, 2016
·Updated
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word 2016, and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Affected Software
8 affected components
Microsoft Office=2010-sp2
Microsoft Office=2010-sp2
Microsoft Office Compatibility Pack=sp3
Microsoft Word=2007-sp3
Microsoft Word=2010-sp2
Microsoft Word=2013-sp1
Microsoft Word=2013-sp1
Microsoft Word=2016
Event History
Feb 10, 2016
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2016-0056?
CVE-2016-0056 has a critical severity rating due to its potential for remote code execution.
2
How do I fix CVE-2016-0056?
To fix CVE-2016-0056, apply the relevant security updates provided by Microsoft for your version of Office.
3
What versions of Microsoft products are affected by CVE-2016-0056?
CVE-2016-0056 affects Microsoft Word 2007 SP3, 2010 SP2, 2013 SP1, 2016, and the Office Compatibility Pack SP3.
4
What type of vulnerability is CVE-2016-0056?
CVE-2016-0056 is classified as a memory corruption vulnerability.
5
Can CVE-2016-0056 be exploited by attackers?
Yes, attackers can exploit CVE-2016-0056 using a specially crafted Office document.