CVE-2020-16949: Microsoft Outlook Denial of Service Vulnerability
<p>A denial of service vulnerability exists in Microsoft Outlook software when the software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could cause a remote denial of service against a system.</p> <p>Exploitation of the vulnerability requires that a specially crafted email be sent to a vulnerable Outlook server.</p> <p>The security update addresses the vulnerability by correcting how Microsoft Outlook handles objects in memory.</p>
Other sources
A denial of service vulnerability exists in Microsoft Outlook software when the software fails to properly handle objects in memory, aka 'Microsoft Outlook Denial of Service Vulnerability'.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is CVE-2020-16949?
CVE-2020-16949 is a denial of service vulnerability in Microsoft Outlook software.
How does CVE-2020-16949 affect Microsoft Outlook?
CVE-2020-16949 causes Microsoft Outlook to fail when handling objects in memory.
Which software versions are affected by CVE-2020-16949?
CVE-2020-16949 affects Microsoft Windows 7, Windows 8.1, Windows 10, Windows Server 2008, Windows Server 2012, Windows Server 2016, Windows Server 2019, Microsoft Office 2019, Microsoft Office LTSC for Mac 2021, and specific versions of Microsoft Outlook (2010, 2013, 2016).
What is the severity of CVE-2020-16949?
CVE-2020-16949 has a severity rating of 7.5 (high).
How can I fix CVE-2020-16949?
To fix CVE-2020-16949, apply the security update provided by Microsoft, as mentioned in the reference link.