First published: Thu Jun 14 2018(Updated: )
An information disclosure vulnerability exists when Microsoft Excel improperly discloses the contents of its memory, aka "Microsoft Excel Information Disclosure Vulnerability." This affects Microsoft Excel Viewer, Microsoft Office, Microsoft Excel.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Excel | =2010-sp2 | |
Microsoft Excel | =2013-sp1 | |
Microsoft Excel | =2013-sp1 | |
Microsoft Excel | =2016 | |
Microsoft Excel Viewer | ||
Microsoft Office | =2010-sp2 | |
Microsoft Office | =2016 | |
Microsoft Office Compatibility Pack | =sp3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8246 is an information disclosure vulnerability in Microsoft Excel that allows the improper disclosure of memory contents.
The affected software includes Microsoft Excel Viewer, Microsoft Office (2010 SP2, 2013 SP1, 2016), and Microsoft Excel (2010 SP2, 2013 SP1, 2016).
CVE-2018-8246 has a severity rating of medium with a score of 5.5.
CVE-2018-8246 works by exploiting a vulnerability in Microsoft Excel that allows the unauthorized disclosure of memory contents.
Yes, Microsoft has released patches and updates to address the vulnerability in the affected software versions.