ZDI-CAN-19183: ZDI-23-010: Microsoft Office Visio DWG File Parsing Heap-based Buffer Overflow Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of Microsoft Office Visio. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-CAN-19183?
The vulnerability ZDI-CAN-19183 is rated as critical due to its potential for remote code execution.
How do I fix ZDI-CAN-19183?
To mitigate ZDI-CAN-19183, ensure that Microsoft Office Visio is updated to the latest version as provided by Microsoft.
What types of attacks exploit ZDI-CAN-19183?
ZDI-CAN-19183 can be exploited through malicious web pages or files that a user must intentionally open.
Is user interaction required for ZDI-CAN-19183 exploitation?
Yes, ZDI-CAN-19183 requires user interaction to be successfully exploited, such as visiting a malicious site or opening a harmful document.
Which software is affected by ZDI-CAN-19183?
ZDI-CAN-19183 affects Microsoft Office Visio, making it vulnerable to remote code execution.