CVE-2017-8570: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office allows a remote code execution vulnerability due to the way that it handles objects in memory, aka "Microsoft Office Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0243.
Other sources
A remote code execution vulnerability exists in Microsoft Office software when it fails to properly handle objects in memory.
— CISA
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8570?
CVE-2017-8570 is rated as a critical remote code execution vulnerability.
How do I fix CVE-2017-8570?
To fix CVE-2017-8570, install the latest security updates provided by Microsoft for your version of Office.
Which versions of Microsoft Office are affected by CVE-2017-8570?
CVE-2017-8570 affects Microsoft Office 2007 SP3, 2010 SP2, 2013 SP1, and 2016.
What type of vulnerability is CVE-2017-8570?
CVE-2017-8570 is a remote code execution vulnerability that affects how Microsoft Office handles objects in memory.
Can exploitation of CVE-2017-8570 lead to data loss?
Yes, successful exploitation of CVE-2017-8570 could potentially lead to unauthorized access and data loss.