Microsoft Office Memory Corruption (MS16-148: CVE-2016-7289; CVE-2016-7289)

An Out-of-Bounds-Read vulnerability exists in Microsoft Office. The vulnerability is due to an error in the way Microsoft Office improperly handles objects in memory while parsing specially crafted files. A remote attacker can exploit this vulnerability by enticing a victim to open a specially crafted file that could grant an attacker remote code execution.

Leave a Reply