ZDI-23-572: Microsoft Office Visio DXF File Parsing Out-Of-Bounds Read Information Disclosure Vulnerability
This vulnerability allows remote attackers to disclose sensitive information on affected installations of Microsoft Office Visio. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-572?
The severity of ZDI-23-572 is considered high due to its potential to disclose sensitive information.
How do I fix ZDI-23-572?
To fix ZDI-23-572, ensure that Microsoft Office Visio is updated to the latest version or patch provided by Microsoft.
What types of attacks are possible with ZDI-23-572?
ZDI-23-572 allows remote attackers to disclose sensitive information if a user interacts with a malicious page or file.
Is user interaction required to exploit ZDI-23-572?
Yes, user interaction is required as the target must visit a malicious page or open a malicious file.
What software is affected by ZDI-23-572?
ZDI-23-572 affects Microsoft Office Visio installations.