CVE-2026-64914
7.8
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C
Summary
Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Microsoft | Microsoft 365 Apps for Enterprise | 16.0.1 < https://aka.ms/OfficeSecurityReleases | affected |
| Microsoft | Microsoft Access 2016 | 16.0.0 < 16.0.5565.1000 | affected |
| Microsoft | Microsoft Access 2016 (32-bit edition) | 16.0.0 < 16.0.5565.1000 | affected |
| Microsoft | Microsoft Office 2019 | 19.0.0 < https://aka.ms/OfficeSecurityReleases | affected |
| Microsoft | Microsoft Office LTSC 2021 | 16.0.1 < https://aka.ms/OfficeSecurityReleases | affected |
| Microsoft | Microsoft Office LTSC 2024 | 16.0.0 < https://aka.ms/OfficeSecurityReleases | affected |
Weaknesses
- CWE-122: CWE-122: Heap-based Buffer Overflow
References
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.