Memory corruption in Microsoft Word and Microsoft Office - CVE-2015-2380
Published: January 31, 2017 / Updated: March 10, 2017
Vulnerability details
The vulnerability exists due to boundary error when handling malicious Word file. A remote attacker can create a specially crafted Microsoft Word file, trick the victim into opening it, cause memory corruption and execute arbitrary code with privileges of the current user.
Successful exploitation of this vulnerability results in arbitrary code execution on the vulnerable system.
Affected software
Microsoft Office