PT-2025-20981 · Microsoft · Office Excel+1

F4

+1

·

Published

2025-05-13

·

Updated

2025-05-14

·

CVE-2025-29979

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions: Microsoft Office Excel (affected versions not specified)
Description: A heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. This issue enables remote attackers to execute arbitrary code and affect the system. It is recommended to apply the May 2025 patch to resolve the issue.
Recommendations: Apply the May 2025 patch to resolve the issue. As a temporary workaround, consider restricting the use of Microsoft Office Excel until the patch is applied.

Fix

RCE

Memory Corruption

Heap Based Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2025-05591
CVE-2025-29979

Affected Products

Office Excel
Office