CVE-2021-28452

Description

Microsoft Outlook Memory Corruption Vulnerability

Risk Information

Base Score
6.9
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L/E:U/RL:O/RC:C
EPSS Score
Exploitation Probability
1.999

Associated Vulnerability

VulnerabilityOS Platform
Microsoft Outlook Memory Corruption Vulnerability for Microsoft Outlook 2010 (KB4493185) 32-Bit EditionWindows
Microsoft Outlook Memory Corruption Vulnerability for Microsoft Outlook 2010 (KB4493185) 64-Bit EditionWindows
Microsoft Outlook Memory Corruption Vulnerability for Microsoft Outlook 2016 (KB4504712) 64-Bit EditionWindows
Microsoft Outlook Memory Corruption Vulnerability for Microsoft Outlook 2016 (KB4504712) 32-Bit EditionWindows
Microsoft Outlook Memory Corruption Vulnerability for Microsoft Outlook 2013 (KB4504733) 64-Bit EditionWindows
Microsoft Outlook Memory Corruption Vulnerability for Microsoft Outlook 2013 (KB4504733) 32-Bit EditionWindows
Microsoft Office Remote Code Execution Vulnerability for Office 2019 for x86 1808 of version(10373.20050)Windows
Microsoft Office Remote Code Execution Vulnerability for Office 2019 x64 1808 (Build:10373.20050)Windows
Microsoft Office Remote Code Execution Vulnerability for Office 2019 for x64 1808 of version(10373.20050)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Semi Annual Channel for x64 2008 of version(13127.21506)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Semi Annual Channel for x86 2008 of version(13127.21506)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Business Semi Annual Channel for x64 2008 of version(13127.21506)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Business Semi Annual Channel for x86 2008 of version(13127.21506)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Semi-Annual Channel Version 2008 (Build 13127.21506) (Online Installer)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Semi Annual Targeted Channel for x64 2102 of version(13801.20506)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Semi Annual Targeted Channel for x86 2102 of version(13801.20506)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Targeted Channel Version 2102 (Build 13801.20506) (Online Installer)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Current Channel for x64 2103 of version(13901.20400)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Current Channel for x86 2103 of version(13901.20400)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Business Current Channel for x64 2103 of version(13901.20400)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Business Current Channel for x86 2103 of version(13901.20400)Windows
Microsoft Office Remote Code Execution Vulnerability for Microsoft 365 Apps for Enterprise Current Channel Version 2103 (Build 13901.20400)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-31245Security Update for Microsoft Outlook 2010 (KB4493185) 32-Bit Edition
PATCH-31246Security Update for Microsoft Outlook 2010 (KB4493185) 64-Bit Edition
PATCH-31249Security Update for Microsoft Outlook 2016 (KB4504712) 64-Bit Edition
PATCH-31250Security Update for Microsoft Outlook 2016 (KB4504712) 32-Bit Edition
PATCH-31247Security Update for Microsoft Outlook 2013 (KB4504733) 64-Bit Edition
PATCH-31248Security Update for Microsoft Outlook 2013 (KB4504733) 32-Bit Edition
PATCH-31275Update for Office 2019 for x86 1808 of version(10373.20050)
PATCH-31276Office 2016 Deployment Tool for Office 2019 x64 1808 (Build:10373.20050)
PATCH-31277Update for Office 2019 for x64 1808 of version(10373.20050)
PATCH-31279Update for Microsoft 365 Apps for Enterprise Semi Annual Channel for x64 2008 of version(13127.21506)
PATCH-31281Update for Microsoft 365 Apps for Enterprise Semi Annual Channel for x86 2008 of version(13127.21506)
PATCH-31283Update for Microsoft 365 Apps for Business Semi Annual Channel for x64 2008 of version(13127.21506)
PATCH-31285Update for Microsoft 365 Apps for Business Semi Annual Channel for x86 2008 of version(13127.21506)
PATCH-31291Update for Microsoft 365 Apps for Enterprise Semi-Annual Channel Version 2008 (Build 13127.21506) (Online Installer)
PATCH-31287Update for Microsoft 365 Apps for Enterprise Semi Annual Targeted Channel for x64 2102 of version(13801.20506)
PATCH-31289Update for Microsoft 365 Apps for Enterprise Semi Annual Targeted Channel for x86 2102 of version(13801.20506)
PATCH-31292Update for Microsoft 365 Apps for Enterprise Targeted Channel Version 2102 (Build 13801.20506) (Online Installer)
PATCH-31267Update for Microsoft 365 Apps for Enterprise Current Channel for x64 2103 of version(13901.20400)
PATCH-31269Update for Microsoft 365 Apps for Enterprise Current Channel for x86 2103 of version(13901.20400)
PATCH-31271Update for Microsoft 365 Apps for Business Current Channel for x64 2103 of version(13901.20400)
PATCH-31273Update for Microsoft 365 Apps for Business Current Channel for x86 2103 of version(13901.20400)
PATCH-31290Update for Microsoft 365 Apps for Enterprise Current Channel Version 2103 (Build 13901.20400)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234