CVE-2017-8501: Buffer Overflow
Published Jul 11, 2017
·Updated
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Office Memory Corruption Vulnerability". This CVE ID is unique from CVE-2017-8502.
Affected Software
12 affected components
Microsoft Excel=2007-sp3
Microsoft Excel=2010-sp2
Microsoft Excel=2013-sp1
Microsoft Excel=2013-sp1
Microsoft Excel=2016
Microsoft Excel Viewer=2007-sp3
Microsoft Office=2011
Microsoft Office=2016
Microsoft Office Compatibility Pack=sp3
Microsoft Office Online Server=2016
Microsoft SharePoint Server=2010-sp2
Microsoft SharePoint Server=2013
Remediation
Event History
Jul 11, 2017
CVE Published
via MITRE·09:00 PM
Data Sourced
via MITRE·09:00 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2017-8501?
CVE-2017-8501 has a critical severity rating due to its potential for remote code execution.
2
How do I fix CVE-2017-8501?
To fix CVE-2017-8501, apply the latest security updates provided by Microsoft for affected Office products.
3
Which software versions are affected by CVE-2017-8501?
CVE-2017-8501 affects Microsoft Excel versions 2007 SP3, 2010 SP2, 2013 SP1, and 2016, among others.
4
What type of vulnerability is CVE-2017-8501?
CVE-2017-8501 is a memory corruption vulnerability that can allow remote code execution.
5
Can CVE-2017-8501 be exploited by an attacker?
Yes, CVE-2017-8501 can be exploited by attackers to execute arbitrary code on a vulnerable system.