VYPR
High severity7.1NVD Advisory· Published Dec 20, 2016· Updated May 6, 2026

CVE-2016-7276

CVE-2016-7276

Description

Microsoft Office 2007 SP3, Office 2010 SP2, Office 2013 SP1, Office for Mac 2011, and Office 2016 for Mac allow remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read) via a crafted document, aka "Microsoft Office Information Disclosure Vulnerability."

Affected products

5
  • Microsoft/Office3 versions
    cpe:2.3:a:microsoft:office:2007:sp3:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:microsoft:office:2007:sp3:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2010:sp2:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office:2013:sp1:*:*:*:*:*:*
  • cpe:2.3:a:microsoft:office_for_mac:2011:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:office_for_mac:2011:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:office_for_mac:2016:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.