(MS15-022) Vulnerabilities in Microsoft Office Could Allow Remote Code Execution (3038999)

  Severity: CRITICAL
  CVE Identifier: CVE-2015-0085,CVE-2015-0086,CVE-2015-0097,CVE-2015-1633,CVE-2015-1636
  Advisory Date: APR 02, 2015

  DESCRIPTION

This security update resolves several vulnerabilities in found in various Microsoft Office components. These vulnerabilities may lead to remote code execution and/or elevation of privilege on affected computers.

  SOLUTION

  AFFECTED SOFTWARE AND VERSION

  • Microsoft Office 2007 Service Pack 3
  • Microsoft Office 2010 Service Pack 2 (32-bit editions)
  • Microsoft Office 2013 (32-bit editions)
  • Microsoft Office 2013 Service Pack 1 (32-bit editions)
  • Microsoft Office 2013 (64-bit editions)
  • Microsoft Office 2013 Service Pack 1 (64-bit editions)
  • Microsoft Office 2013 RT
  • Microsoft Office 2013 RT Service Pack 1
  • Microsoft Word Viewer
  • Microsoft Excel Viewer
  • Microsoft Office Compatibility Pack Service Pack 3
  • Microsoft SharePoint Server 2010 Service Pack 2 Word Automation Services
  • Microsoft SharePoint Server 2013 Excel Services
  • Microsoft SharePoint Server 2013 Service Pack 1 Excel Services
  • Microsoft SharePoint Server 2013 Word Automation Services
  • Microsoft SharePoint Server 2013 Service Pack 1 Word Automation Services
  • Microsoft Office Web Apps 2010 Service Pack 2
  • Microsoft Office Web Apps 2013
  • Microsoft Office Web Apps 2013 Service Pack 1
  • Microsoft SharePoint Server 2007 Service Pack 3 (32-bit editions)
  • Microsoft SharePoint Server 2007 Service Pack 3 (64-bit editions)
  • Microsoft Windows SharePoint Services 3.0 Service Pack 3 (32-bit versions)
  • Microsoft Windows SharePoint Services 3.0 Service Pack 3 (64-bit versions)
  • Microsoft SharePoint Server 2010 Service Pack 2
  • Microsoft SharePoint Foundation 2013
  • Microsoft SharePoint Foundation 2013 Service Pack 1