First published: Wed Sep 13 2017(Updated: )
A remote code execution vulnerability exists in Microsoft Publisher 2007 Service Pack 3 and Microsoft Publisher 2010 Service Pack 2 when they fail to properly handle objects in memory, aka "Microsoft Office Publisher Remote Code Execution".
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Publisher | =2007-sp3 | |
Microsoft Publisher | =2010-sp2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-8725 is considered a critical remote code execution vulnerability.
To mitigate CVE-2017-8725, users should apply the latest security updates from Microsoft for Publisher 2007 and 2010.
CVE-2017-8725 affects Microsoft Publisher 2007 Service Pack 3 and Microsoft Publisher 2010 Service Pack 2.
CVE-2017-8725 is a remote code execution vulnerability that allows an attacker to execute arbitrary code.
CVE-2017-8725 exploits a flaw in how Microsoft Publisher handles objects in memory, potentially leading to code execution.