CVE-2017-8696: Buffer Overflow
Windows Uniscribe in Microsoft Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Office 2007 SP3; Office 2010 SP2; Word Viewer; Office for Mac 2011 and 2016; Skype for Business 2016; Lync 2013 SP1; Lync 2010; Lync 2010 Attendee; and Live Meeting 2007 Add-in and Console allows an attacker to execute code remotely via a specially crafted website or a specially crafted document or email attachment, aka "Microsoft Graphics Component Remote Code Execution."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2017-8696?
CVE-2017-8696 has a critical severity rating, indicating a serious risk to affected systems.
How do I fix CVE-2017-8696?
To mitigate CVE-2017-8696, apply the latest security updates provided by Microsoft for all affected software.
Which systems are impacted by CVE-2017-8696?
CVE-2017-8696 affects various Microsoft products, including Windows Server, Office 2007 and 2010, Lync, and Skype for Business.
What type of vulnerability is CVE-2017-8696?
CVE-2017-8696 is a vulnerability in the Windows Uniscribe component that could allow remote code execution.
Is there a workaround for CVE-2017-8696?
Currently, no official workaround exists for CVE-2017-8696, so immediate patching is recommended.