CVE-2014-6364

Microsoft Office 2007 SP3; 2010 SP2; 2013 Gold, SP1, and SP2; and 2013 RT Gold and SP1 - Use-After-Free

Title source: llm
STIX 2.1

Description

Use-after-free vulnerability in Microsoft Office 2007 SP3; 2010 SP2; 2013 Gold, SP1, and SP2; and 2013 RT Gold and SP1 allows remote attackers to execute arbitrary code via a crafted Office document, aka "Microsoft Office Component Use After Free Vulnerability."

References (1)

Core 1
Core References

Scores

EPSS 0.1466
EPSS Percentile 96.3%

Details

Status published
Products (3)
microsoft/office 2007 sp3
microsoft/office 2010 sp2 (2 CPE variants)
microsoft/office 2013 (5 CPE variants)
Published Dec 11, 2014
Tracked Since Feb 18, 2026