CVE-2018-0950: Medium severity microsoft office vulnerability
An information disclosure vulnerability exists when Office renders Rich Text Format (RTF) email messages containing OLE objects when a message is opened or previewed, aka "Microsoft Office Information Disclosure Vulnerability." This affects Microsoft Word, Microsoft Office. This CVE ID is unique from CVE-2018-1007.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2018-0950?
CVE-2018-0950 is an information disclosure vulnerability in Microsoft Office when rendering Rich Text Format (RTF) email messages containing OLE objects.
How does CVE-2018-0950 affect Microsoft Word and Microsoft Office?
CVE-2018-0950 affects Microsoft Word and Microsoft Office as it allows for information disclosure when opening or previewing RTF email messages containing OLE objects.
What is the severity of CVE-2018-0950?
CVE-2018-0950 has a severity level of medium with a CVSS score of 6.5.
Is there a fix available for CVE-2018-0950?
Yes, Microsoft has released security updates to address CVE-2018-0950. It is recommended to install the latest updates for Microsoft Office and Microsoft Word.
Where can I find more information about CVE-2018-0950?
You can find more information about CVE-2018-0950 on the Microsoft Security Guidance Advisory page and the SecurityFocus and Security Tracker websites.