ZDI-25-028: Microsoft Office Word RTF File Parsing Memory Corruption Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Word. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file. The ZDI has assigned a CVSS rating of 7.8. The following CVEs are assigned: CVE-2025-21298.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-25-028?
The severity of ZDI-25-028 is classified as high due to its potential for remote code execution.
How do I fix ZDI-25-028?
To fix ZDI-25-028, ensure that you apply the latest security updates released by Microsoft for Office Word.
What are the steps to exploit ZDI-25-028?
Exploitation of ZDI-25-028 requires user interaction, specifically opening a malicious file or visiting a malicious webpage.
Which versions of Microsoft Office Word are affected by ZDI-25-028?
ZDI-25-028 affects all supported versions of Microsoft Office Word that have not been patched.
What types of attacks can ZDI-25-028 enable?
ZDI-25-028 can enable remote attackers to execute arbitrary code on affected systems.