First published: Wed May 11 2016(Updated: )
The Windows font library in Microsoft Office 2010 SP2, Word 2010 SP2, Word Automation Services on SharePoint Server 2010 SP2, and Office Web Apps 2010 SP2 allows remote attackers to execute arbitrary code via a crafted embedded font, aka "Microsoft Office Graphics RCE Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Office | =2010-sp2 | |
Microsoft Office Web Apps | =2010-sp2 | |
Microsoft SharePoint Server 2010 | =2010-sp2 | |
Microsoft Office Word | =2010-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0183 is rated as Critical due to its potential to allow remote code execution.
To fix CVE-2016-0183, apply the appropriate security updates provided by Microsoft.
CVE-2016-0183 affects Microsoft Office 2010 SP2, Microsoft Word 2010 SP2, Microsoft Office Web Apps 2010 SP2, and Microsoft SharePoint Server 2010 SP2.
CVE-2016-0183 allows attackers to execute arbitrary code via a crafted embedded font.
CVE-2016-0183 specifically impacts Microsoft Office 2010 SP2 and does not affect later versions.