CVE-2022-24461: Microsoft Office Visio Remote Code Execution Vulnerability
Published Mar 8, 2022
·Updated
Microsoft Office Visio Remote Code Execution Vulnerability
Affected Software
10 affected componentsFixes available
Microsoft Office 2019 for 32-bit editions
Microsoft Office LTSC 2021 for 64-bit editions
Microsoft Office 2019 for 64-bit editions
Microsoft Office LTSC 2021 for 32-bit editions
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps for Enterprise
Microsoft 365 Apps
Microsoft Office=2019
Microsoft Office=2021
Microsoft Office Long Term Servicing Channel=2021
Event History
Mar 8, 2022
CVE Published
via Microsoft·08:00 AM
Data Sourced
via Microsoft·08:00 AM
DescriptionSeverityWeakness
Mar 9, 2022
CVE Published
via MITRE·05:07 PM
Data Sourced
via MITRE·05:07 PM
DescriptionSeverity
Data Sourced
via NVD·05:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2022-24461?
CVE-2022-24461 is rated as critical due to its potential for remote code execution.
2
How do I fix CVE-2022-24461?
To mitigate CVE-2022-24461, update your Microsoft Office applications to the latest security patch provided by Microsoft.
3
Which Microsoft products are affected by CVE-2022-24461?
CVE-2022-24461 affects Microsoft Office LTSC 2021, Office 2019, and Microsoft 365 Apps for Enterprise across both 32-bit and 64-bit editions.
4
What types of attacks can CVE-2022-24461 facilitate?
CVE-2022-24461 can facilitate remote code execution, allowing an attacker to execute arbitrary code on the victim's machine.
5
Is there a workaround for CVE-2022-24461?
Currently, the recommended approach is to apply the latest updates from Microsoft as there is no effective workaround for CVE-2022-24461.