CVE-2016-3280
published 2016-07-13CVE-2016-3280: Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack SP3…
PriorityP350high7.8CVSS 3.0
AVLACLPRNUIRSUCHIHAH
EPSS
19.64%
97.1th percentile
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | office | — | — |
| microsoft | word | — | — |
| microsoft | word | — | — |
| microsoft | word | — | — |
| microsoft | word_for_mac | — | — |
| microsoft | word_for_mac | — | — |
| microsoft | word_rt | — | — |
| msrc | microsoft_office_2010_service_pack_2 | — | — |
| msrc | microsoft_office_compatibility_pack_service_pack_3 | — | — |
| msrc | microsoft_office_word_viewer | — | — |
| msrc | microsoft_word_2007_service_pack_3 | — | — |
| msrc | microsoft_word_2010_service_pack_2 | — | — |
| msrc | microsoft_word_2013_rt_service_pack_1 | — | — |
| msrc | microsoft_word_2013_service_pack_1 | — | — |
| msrc | microsoft_word_2016_for_mac | — | — |
| msrc | microsoft_word_for_mac_2011 | — | — |
CVSS provenance
nvdv3.07.8HIGHCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_msrc7.8HIGH
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-p4xv-4659-w8hr: Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Word 2016 for Mac, Office Compatibility P
ghsa_unreviewed·2022-05-14
CVE-2016-3280 [HIGH] CWE-119 GHSA-p4xv-4659-w8hr: Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Word 2016 for Mac, Office Compatibility P
Microsoft Word 2007 SP3, Office 2010 SP2, Word 2010 SP2, Word 2013 SP1, Word 2013 RT SP1, Word for Mac 2011, Word 2016 for Mac, Office Compatibility Pack SP3, and Word Viewer allow remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Memory Corruption Vulnerability."
Red Hat
openstack-nova: May fail to delete images in resize state regression
vendor_redhat·2016-09-21·CVSS 6.8
CVE-2016-7498 [MEDIUM] CWE-400 openstack-nova: May fail to delete images in resize state regression
openstack-nova: May fail to delete images in resize state regression
OpenStack Compute (nova) 13.0.0 does not properly delete instances from compute nodes, which allows remote authenticated users to cause a denial of service (disk consumption) by deleting instances while in the resize state. NOTE: this vulnerability exists because of a CVE-2015-3280 regression.
Package: openstack-nova (Red Hat OpenStack Platform 10 (Newton)) - Not affected
Package: openstack-nova (Red Hat OpenStack Platform 9 (Mitaka)) - Not affected
Microsoft
Microsoft Office Memory Corruption Vulnerability
vendor_msrc·2016-07-12·CVSS 7.8
CVE-2016-3280 [HIGH] Microsoft Office Memory Corruption Vulnerability
Microsoft Office Memory Corruption Vulnerability
Description: A remote code execution vulnerability exists in Microsoft Office software when the Office software fails to properly handle objects in memory. An attacker who successfully exploited the vulnerability could run arbitrary code in the context of the current user. If the current user is logged on with administrative user rights, an attacker could take control of the affected system. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than users who operate with administrative user rights.
Exploitation of the vulnerability requires that a user open a specially crafted fil
No detection rules found.
No public exploits indexed.
Zscaler
Zscaler found Multiple Security Vulnerabilities | 07-12-2016
blogs_zscaler
Zscaler found Multiple Security Vulnerabilities | 07-12-2016
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Bugzilla
CVE-2016-7498 openstack-nova: May fail to delete images in resize state regression
bugzilla·2016-09-23·CVSS 6.8
CVE-2016-7498 [MEDIUM] CVE-2016-7498 openstack-nova: May fail to delete images in resize state regression
CVE-2016-7498 openstack-nova: May fail to delete images in resize state regression
If an authenticated user deletes an instance while it is in resize state, it
will cause the original instance to not be deleted from the compute
node it was running on. An attacker can use this to launch a denial of
service attack. All Nova setups are affected.
Affects
~~~~~~~
- Nova: ==13.0.0
Patches
~~~~~~~
- https://review.openstack.org/327398 (Mitaka)
- https://review.openstack.org/326262 (Newton)
Credits
~~~~~~~
- Rajesh Tailor from Red Hat (CVE-2016-7498)
References
~~~~~~~~~~
- https://bugs.launchpad.net/bugs/1589821
- http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-7498
Notes
~~~~~
- This bug is similar to OSSA-2015-017 (CVE-2015-3280) and was
re-introduced in the first release of Mitak
Bugzilla
openstack-nova: Nova may fail to delete images in resize state regression
bugzilla·2016-09-21·CVSS 6.8
CVE-2015-3280 [MEDIUM] openstack-nova: Nova may fail to delete images in resize state regression
openstack-nova: Nova may fail to delete images in resize state regression
It was reported from upstream that a vulnerability was found in Nova resize state. If an authenticated user deletes an instance while it is in resize state, it will cause the original instance to not be deleted from the compute node it was running on. An attacker can use this to launch a denial of service attack. All Nova setups are affected.
This vulnerability is similar to OSSA-2015-017 (CVE-2015-3280) and was re-introduced in the first release of Mitaka version of Nova and it was re-fixed in nova-13.1.0.
References:
http://seclists.org/oss-sec/2016/q3/577
http://www.securityfocus.com/bid/91582http://www.securitytracker.com/id/1036274https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-088http://www.securityfocus.com/bid/91582http://www.securitytracker.com/id/1036274https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-088
2016-07-13
Published