PT-2025-10823 · Microsoft · Office

Haifei Li

·

Published

2025-03-11

·

Updated

2025-10-14

·

CVE-2025-24080

CVSS v3.1
7.8
VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Microsoft Office (affected versions not specified)
Description A use after free condition exists in Microsoft Office, allowing an unauthorized attacker to execute code. The issue enables remote attackers to execute arbitrary code and affect the system. The vulnerability involves the potential for using memory after it has been freed, which could allow an attacker to execute code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Use After Free

Weakness Enumeration

Related Identifiers

BDU:2025-02714
CVE-2025-24080

Affected Products

Office