First published: Tue Jul 14 2020(Updated: )
A remote code execution vulnerability exists in Microsoft Outlook software when it fails to properly handle objects in memory, aka 'Microsoft Outlook Remote Code Execution Vulnerability'.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft 365 Apps | ||
Microsoft Office | =2019 | |
Microsoft Outlook | =2010-sp2 | |
Microsoft Outlook | =2013-sp1 | |
Microsoft Outlook | =2013-sp1 | |
Microsoft Outlook | =2016 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-1349 is a remote code execution vulnerability in Microsoft Outlook software.
The severity of CVE-2020-1349 is high, with a CVSS score of 7.8.
Microsoft Office LTSC for Mac 2021, Microsoft Office 2019, Microsoft Outlook 2010 SP2, Microsoft Outlook 2013 SP1, Microsoft Outlook 2013 SP1 running on RT devices, and Microsoft Outlook 2016 are affected by CVE-2020-1349.
To fix CVE-2020-1349, apply the latest security update provided by Microsoft.
More information about CVE-2020-1349 can be found on the following references: [Reference 1](http://packetstormsecurity.com/files/169959/Microsoft-Outlook-2019-16.0.12624.20424-Remote-Code-Execution.html), [Reference 2](https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-1349).