CVE-2026-64920

Summary

Heap-based buffer overflow in Microsoft Office Access allows an unauthorized attacker to execute code locally.

Affected Software

VendorProductVersion RangeStatus
MicrosoftMicrosoft 365 Apps for Enterprise16.0.1 < https://aka.ms/OfficeSecurityReleasesaffected
MicrosoftMicrosoft Access 201616.0.0 < 16.0.5565.1000affected
MicrosoftMicrosoft Access 2016 (32-bit edition)16.0.0 < 16.0.5565.1000affected
MicrosoftMicrosoft Office 201919.0.0 < https://aka.ms/OfficeSecurityReleasesaffected
MicrosoftMicrosoft Office LTSC 202116.0.1 < https://aka.ms/OfficeSecurityReleasesaffected
MicrosoftMicrosoft Office LTSC 202416.0.0 < https://aka.ms/OfficeSecurityReleasesaffected

Weaknesses

  • CWE-122: CWE-122: Heap-based Buffer Overflow

References