CVE-2025-53740: Microsoft Office Remote Code Execution Vulnerability
Microsoft Office Remote Code Execution Vulnerability
Other sources
Use after free in Microsoft Office allows an unauthorized attacker to execute code locally.
— Microsoft
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-53740?
CVE-2025-53740 has a critical severity rating as it allows remote code execution through a use-after-free condition in Microsoft Office.
How do I fix CVE-2025-53740?
Users should update their affected Microsoft Office products to the latest version to mitigate the risks associated with CVE-2025-53740.
Which Microsoft Office versions are affected by CVE-2025-53740?
CVE-2025-53740 affects multiple versions of Microsoft Office including Office 2016, 2019, 2021, and Office LTSC 2024 for various architectures.
What kind of attack does CVE-2025-53740 facilitate?
CVE-2025-53740 enables unauthorized attackers to execute arbitrary code on a victim's machine, potentially leading to data theft or system compromise.
Is there a patch available for CVE-2025-53740?
Yes, a patch is available for CVE-2025-53740 and users should promptly apply it to protect their systems.