CVE-2024-43463: Microsoft Office Visio Remote Code Execution Vulnerability
Microsoft Office Visio Remote Code Execution Vulnerability
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 16.0.5465.1001Patch KB5002634 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in https://aka.ms/OfficeSecurityReleases
Event History
Frequently Asked Questions
What is the severity of CVE-2024-43463?
CVE-2024-43463 is rated with a high severity level due to its potential for remote code execution.
How do I fix CVE-2024-43463?
To fix CVE-2024-43463, install the latest security updates for affected Microsoft Office products provided by Microsoft.
Which Microsoft products are affected by CVE-2024-43463?
CVE-2024-43463 affects Microsoft Office LTSC 2021, Microsoft 365 Apps for Enterprise, Office 2019, and Microsoft Visio 2016.
What type of vulnerability is CVE-2024-43463?
CVE-2024-43463 is a remote code execution vulnerability found in Microsoft Office Visio.
Can CVE-2024-43463 be exploited without user interaction?
Yes, CVE-2024-43463 can potentially be exploited by an attacker who tricks a user into opening a malicious file.