Impact
An out-of-bounds read flaw in Microsoft Office allows an unauthorized local attacker to extract data stored in memory, leading to the disclosure of confidential information. The weakness corresponds to CWE-125, which describes improper handling of array bounds that can leak sensitive data. It requires an attacker with local access to the target system.
Affected Systems
The vulnerability impacts a broad set of Microsoft products. Affected vendors and products include Microsoft 365 Apps for Enterprise; Microsoft Office 2016, 2019, Office 2021 LTSC, Office 2024 LTSC; Microsoft Office 365 for Mac; Office LTSC for Mac 2021 and 2024; and Microsoft SharePoint Enterprise Server 2016, SharePoint Server 2019, and SharePoint Server Subscription Edition. Version information is limited to the product families listed above.
Risk and Exploitability
The CVSS v3.1 score of 5.5 demonstrates a moderate risk level. Because this flaw is local to the target system, it requires that the attacker already have unauthorized local access—either physical or through compromised user credentials—to exploit it. The EPSS score of < 1% indicates a very low probability of exploitation at the time of analysis. The vulnerability is not listed in the CISA KEV catalog. If the flaw is leveraged, sensitive memory contents could be read by the attacker locally, potentially exposing passwords, cryptographic keys, or other private data stored by Office applications.
OpenCVE Enrichment