First published: Tue Mar 11 2025(Updated: )
<p>Use after free in Microsoft Office Access allows an unauthorized attacker to execute code locally.</p>
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Access | ||
Microsoft 365 Apps for enterprise | ||
Microsoft Access | ||
Microsoft Office 2019 for Mac | ||
Microsoft Office LTSC 2024 | ||
Microsoft Office LTSC 2021 | ||
Microsoft Office LTSC 2021 | ||
Microsoft 365 Apps for enterprise | ||
Microsoft Office 2019 for Mac | ||
Microsoft Office LTSC 2024 | ||
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2025-26630 is classified as a critical vulnerability that allows for remote code execution in Microsoft Office Access.
To fix CVE-2025-26630, apply the latest security updates provided by Microsoft for the affected software.
CVE-2025-26630 affects Microsoft Access 2016, Microsoft 365 Apps for Enterprise, Office 2019, and Office LTSC versions.
CVE-2025-26630 facilitates local code execution by an unauthorized attacker through a use-after-free vulnerability.
Yes, Microsoft has released specific patches to remediate CVE-2025-26630 which can be found on their update guide.