CVE-2026-64917
Access: Out-of-bounds Read (CVE-2026-64917)
Beschreibung
Metriken
Weakness-Klassen (CWE)
CWE-125Base
Out-of-bounds Read
The product reads data past the end, or before the beginning, of the intended buffer.
cwe.mitre.org →
Re-Analyse & Statuswechsel
Chronologie der NVD-Audit-Events für diese CVE — Reanalyses, CVSS-Updates, CPE-Diffs.
- CVE Modified2026-08-11 18:18 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
- SSVC: {"id":"CVE-2026-64917","role":"CISA Coordinator","options":[{"exploitation":"none"},{"automatable":"no"},{"technicalI…
- New CVE Received2026-08-11 17:18 UTC· secure@microsoft.com
- Affected: Microsoft 365 Apps for Enterprise, Microsoft Office 2019, Microsoft Office 365 for Mac (+5)
- Description: Out-of-bounds read in Microsoft Office Word allows an unauthorized attacker to disclose information locally.
- CVSS V3.1: AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
- CWE: CWE-125
Betroffene Produkte
Aus der Hersteller-/CERT-Meldung extrahierte Produkte und Versionsbereiche. Ein Version-Range wie „<4.14.6“ impliziert die Update-Empfehlung „auf 4.14.6 oder höher aktualisieren“.
Microsoft
Access2016
Microsoft
AzureSQL Managed Instance
Microsoft
Excel2016
Microsoft
Office2016
Microsoft
Office2019
Microsoft
OfficeLTSC 2021
Microsoft
OfficeLTSC 2024
Microsoft
OfficeLTSC for Mac 2021
Microsoft
OfficeLTSC for Mac 2024
Microsoft
Office 365for Mac
Microsoft
OneDrivefor MacOS
Microsoft
Outlook2016
Microsoft
PowerPoint2016
Microsoft
Service BusAzure Service Bus
Microsoft
SharePointEnterprise Server 2016
Microsoft
SharePointOnline
Microsoft
SharePointServer Subscription Edition
Microsoft
Teamsfor Android
Microsoft
Teamsfor iOS
Microsoft
Word2016