CVE-2023-36565

CWE-416Use After Free4 documents4 sources
Severity
7.0HIGH
EPSS
0.1%
top 73.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedOct 10

Description

Microsoft Office Graphics Elevation of Privilege Vulnerability

CVSS vector

CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:HExploitability: 1.0 | Impact: 5.9

Affected Packages6 packages

NVDmicrosoft/office< 16.0.14326.21606+2
CVEListV5microsoft/microsoft_office_for_android16.0.116.0.16827.20138
CVEListV5microsoft/microsoft_office_2019_for_mac16.0.016.78.23100802
CVEListV5microsoft/microsoft_office_for_universal16.0.116.0.14326.21606
CVEListV5microsoft/microsoft_office_ltsc_for_mac_202116.0.116.78.23100802

Patches

🔴Vulnerability Details

2
GHSA
GHSA-9r67-wf83-q2q5: Microsoft Office Graphics Elevation of Privilege Vulnerability2023-10-10
CVEList
Microsoft Office Graphics Elevation of Privilege Vulnerability2023-10-10

📋Vendor Advisories

1
Microsoft
Microsoft Office Graphics Elevation of Privilege Vulnerability2023-10-10