ZDI-23-384: Microsoft Office Word DOCX File Parsing Out-Of-Bounds Write Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-384?
The severity of ZDI-23-384 is rated at 61, indicating a moderate risk level.
How do I fix ZDI-23-384?
To fix ZDI-23-384, ensure that you have applied the latest patches and updates provided by Microsoft for Microsoft Office Word.
What kind of attack is associated with ZDI-23-384?
ZDI-23-384 is associated with remote code execution attacks that require user interaction, such as opening a malicious DOCX file.
Which software is affected by ZDI-23-384?
ZDI-23-384 affects Microsoft Office Word installations.
How can I protect myself from ZDI-23-384?
To protect against ZDI-23-384, avoid opening untrusted or suspicious DOCX files and keep your software updated.