Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerability · NVD

CVE-2014-2778

CVE-2014-2778, Severity pending severity (CVSS —): 2 tracked apps concerned, all fixed or indeterminable on their current version.

Severity (CVSS)
-
Exploitation
-
Tracked apps
2
Still exposed
0

Microsoft Word 2007 SP3 and Office Compatibility Pack SP3 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted embedded font in a (1) .doc or (2) .docx document, aka "Embedded Font Vulnerability."

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

  • Microsoft Word macOS com.microsoft.Word
    Affected - Fixed in - Latest tracked 16.112.2 undetermined
  • Microsoft Office Windows winget:Microsoft.Office
    Affected - Fixed in - Latest tracked - undetermined
Vulnerable CPE configurations (2)
Vendor Product Versions
microsoft word
All platforms (wildcard)
-
microsoft word
All platforms (wildcard)
-
View on NVD ↗ Advisory · blogs.technet.com