#VU70225 Use-after-free in Microsoft products - CVE-2022-44695
Published: December 13, 2022 / Updated: December 15, 2022
Microsoft Visio
Microsoft Office
Microsoft 365 Apps for Enterprise
Microsoft Office LTSC
Microsoft
Description
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to a use-after-free error when processing DWG files in Microsoft Visio. A remote attacker can trick the victim to open a specially crafted DWG file, trigger a use-after-free error and gain access to sensitive information.