CVE-2015-1770

Microsoft Office 2013 SP1 and 2013 RT SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Uninitialized Memory Use Vulnerability."
References
Link Resource
http://www.securityfocus.com/bid/75016 Broken Link Third Party Advisory VDB Entry
http://www.securitytracker.com/id/1032523 Broken Link Third Party Advisory VDB Entry
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-059 Patch Vendor Advisory
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:office:2013:sp1:*:*:-:*:*:*
cpe:2.3:a:microsoft:office:2013:sp1:*:*:rt:*:*:*

History

09 Jul 2024, 18:27

Type Values Removed Values Added
First Time Microsoft office
CVSS v2 : 9.3
v3 : unknown
v2 : 9.3
v3 : 8.8
CWE CWE-19 CWE-824
CPE cpe:2.3:a:microsoft:office_2013:rt:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:office_2013:*:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:office:2013:sp1:*:*:-:*:*:*
cpe:2.3:a:microsoft:office:2013:sp1:*:*:rt:*:*:*
References () http://www.securityfocus.com/bid/75016 - () http://www.securityfocus.com/bid/75016 - Broken Link, Third Party Advisory, VDB Entry
References () http://www.securitytracker.com/id/1032523 - () http://www.securitytracker.com/id/1032523 - Broken Link, Third Party Advisory, VDB Entry
References () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-059 - () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2015/ms15-059 - Patch, Vendor Advisory

Information

Published : 2015-06-10 01:59

Updated : 2024-07-09 18:27


NVD link : CVE-2015-1770

Mitre link : CVE-2015-1770

CVE.ORG link : CVE-2015-1770


JSON object : View

Products Affected

microsoft

  • office
CWE
CWE-824

Access of Uninitialized Pointer