CVE-2025-53738: Microsoft Word Remote Code Execution Vulnerability
Microsoft Word Remote Code Execution Vulnerability
Other sources
Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally.
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53738?
CVE-2025-53738 is classified as a critical remote code execution vulnerability affecting Microsoft Word.
How do I fix CVE-2025-53738?
To fix CVE-2025-53738, users should apply the latest security updates provided by Microsoft for their affected Office products.
What systems are affected by CVE-2025-53738?
CVE-2025-53738 affects multiple versions of Microsoft Office, including Office LTSC, Office 2019, and Microsoft 365 Apps.
Can CVE-2025-53738 allow an attacker to access sensitive information?
Yes, if successfully exploited, CVE-2025-53738 can allow an attacker to execute arbitrary code, potentially compromising sensitive information.
Is there a workaround for CVE-2025-53738 until I can apply the patch?
Currently, the best practice is to upgrade to a patched version of Microsoft Office as no official workaround is recommended.