CVE-2023-21714: Microsoft Office Information Disclosure Vulnerability
Microsoft Office Information Disclosure Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in https://aka.ms/OfficeSecurityReleases
Event History
Frequently Asked Questions
What is CVE-2023-21714?
CVE-2023-21714 is a vulnerability in Microsoft Office that allows for information disclosure.
How severe is CVE-2023-21714?
CVE-2023-21714 has a severity rating of 5.5 (high).
Which software versions are affected by CVE-2023-21714?
CVE-2023-21714 affects Microsoft Office LTSC for Mac 2021, Microsoft Office Long Term Servicing Channel 2021, and Microsoft 365 Apps for Enterprise (x86_64 and x86).
How can I fix CVE-2023-21714?
To fix CVE-2023-21714, update to the latest security updates for Microsoft Office. Please refer to the Microsoft documentation for more information.
Where can I find more information about CVE-2023-21714?
You can find more information about CVE-2023-21714 on the Microsoft Security Response Center website.