cbcvebase.
CVE-2026-40367
published 2026-05-12

CVE-2026-40367: Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.

high8.4CVSS 3.1
AVLACLPRNUINSUCHIHAH
Untrusted pointer dereference in Microsoft Office Word allows an unauthorized attacker to execute code locally.

Affected

17 ranges
VendorProductVersion rangeFixed in
microsoftmicrosoft_365_apps_for_enterprise>= 16.0.1 < https://aka.ms/OfficeSecurityReleaseshttps://aka.ms/OfficeSecurityReleases
microsoftmicrosoft_office_2019>= 19.0.0 < https://aka.ms/OfficeSecurityReleaseshttps://aka.ms/OfficeSecurityReleases
microsoftmicrosoft_office_ltsc_2021>= 16.0.1 < https://aka.ms/OfficeSecurityReleaseshttps://aka.ms/OfficeSecurityReleases
microsoftmicrosoft_office_ltsc_2024>= 16.0.0 < https://aka.ms/OfficeSecurityReleaseshttps://aka.ms/OfficeSecurityReleases
microsoftmicrosoft_office_ltsc_for_mac_2021>= 16.0.1 < 16.109.2605101916.109.26051019
microsoftmicrosoft_office_ltsc_for_mac_2024>= 16.0.0 < 16.109.2605101916.109.26051019
microsoftmicrosoft_sharepoint_enterprise_server_2016>= 16.0.0 < 16.0.5552.100216.0.5552.1002
microsoftmicrosoft_sharepoint_server_2019>= 16.0.0 < 16.0.10417.2012816.0.10417.20128
microsoftmicrosoft_sharepoint_server_subscription_edition>= 16.0.0 < 16.0.19725.2028016.0.19725.20280
microsoftmicrosoft_word_2016>= 16.0.1 < 16.0.5552.100016.0.5552.1000
microsoftoffice
microsoftoffice_long_term_servicing_channel
microsoftoffice_long_term_servicing_channel
microsoftsharepoint_server< 16.0.19725.2028016.0.19725.20280
microsoftsharepoint_server
microsoftsharepoint_server
microsoftword