CVE-2020-0991: Critical severity microsoft office vulnerability
Published Apr 15, 2020
·Updated
A remote code execution vulnerability exists in Microsoft Office software when the software fails to properly handle objects in memory, aka 'Microsoft Office Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-0760.
Affected Software
6 affected components
Microsoft Office=2010-sp2
Microsoft Office=2013-sp1
Microsoft Office=2013-sp1
Microsoft Office=2016
Microsoft Office=2019
Microsoft Office 365 ProPlus
Remediation
Event History
Apr 15, 2020
CVE Published
via MITRE·03:13 PM
Data Sourced
via MITRE·03:13 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-0991?
CVE-2020-0991 is a remote code execution vulnerability in Microsoft Office software.
2
How does CVE-2020-0991 manifest?
CVE-2020-0991 manifests when the Microsoft Office software fails to properly handle objects in memory.
3
What is the severity of CVE-2020-0991?
CVE-2020-0991 has a severity rating of 7.8, which is considered critical.
4
Which versions of Microsoft Office are affected by CVE-2020-0991?
CVE-2020-0991 affects various versions of Microsoft Office, including 2010 SP2, 2013 SP1, 2016, 2019, and Office 365 Proplus.
5
How can I fix CVE-2020-0991?
To fix CVE-2020-0991, it is recommended to install the latest security updates provided by Microsoft.