First published: Tue Mar 11 2025(Updated: )
<p>Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft 365 Apps for enterprise | ||
Microsoft Office LTSC 2024 | ||
Microsoft Office LTSC 2024 | ||
Microsoft 365 Apps for enterprise | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-26629 has a high severity rating due to its potential for remote code execution.
To fix CVE-2025-26629, ensure that you apply the latest security updates from Microsoft for impacted Office products.
CVE-2025-26629 affects Microsoft 365 Apps for Enterprise and Office LTSC 2024 across both 32-bit and 64-bit editions.
Yes, CVE-2025-26629 can be exploited by an attacker to execute code locally once the vulnerabilities are triggered.
CVE-2025-26629 is caused by a use after free vulnerability in Microsoft Office that can lead to unauthorized code execution.