CVE-2016-0140: Buffer Overflow
Microsoft Office 2007 SP3, Office 2010 SP2, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0140?
CVE-2016-0140 has a critical severity rating, as it allows remote code execution through manipulated Office documents.
How do I fix CVE-2016-0140?
To fix CVE-2016-0140, ensure that you install the latest security updates provided by Microsoft for affected versions of Microsoft Office.
Which software products are affected by CVE-2016-0140?
CVE-2016-0140 affects Microsoft Office 2007 SP3, Office 2010 SP2, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2.
What types of attacks can CVE-2016-0140 enable?
CVE-2016-0140 can enable remote attackers to execute arbitrary code on a victim's system by exploiting the vulnerability in Office documents.
How can organizations protect themselves from CVE-2016-0140?
Organizations can protect themselves from CVE-2016-0140 by implementing strict access controls, user training on document handling, and regularly applying security patches.