CVE-2017-0027: Infoleak
Microsoft Excel 2007 SP3, Excel 2010 SP2, Excel 2013 RT SP1, Excel 2016, Office Compatibility Pack SP3, and Excel Services on SharePoint Server 2013 SP1 allow remote attackers to obtain sensitive information from process memory via a crafted Office document, aka "Microsoft Office Information Disclosure Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-0027?
CVE-2017-0027 has a severity rating that indicates a potential risk of information disclosure.
How do I fix CVE-2017-0027?
To resolve CVE-2017-0027, users should apply the latest security updates provided by Microsoft for their affected software.
Which versions of Microsoft Excel are affected by CVE-2017-0027?
CVE-2017-0027 affects Microsoft Excel 2007 SP3, 2010 SP2, 2013 RT SP1, and 2016, along with Office Compatibility Pack SP3 and SharePoint Server 2013 SP1.
What type of vulnerability is CVE-2017-0027?
CVE-2017-0027 is categorized as an information disclosure vulnerability which allows attackers to access sensitive information.
How can I determine if my software is vulnerable to CVE-2017-0027?
You can determine vulnerability to CVE-2017-0027 by checking the version of your Microsoft Excel or related software and whether security updates have been applied.