CVE-2024-21379: 365 Apps Integer Overflow (CVSS 7.8)

CVE-2024-21379

Severity: High CVSS Score: 7.8/10
Vulnerability Type: Microsoft Word Remote Code Execution Vulnerability
EPSS Probability: 1.72%


Description

Microsoft Word Remote Code Execution Vulnerability

Metrics

Weakness Enumeration

Affected Software

Vendor Product Versions
Microsoft 365 Apps All versions
Microsoft Office 2019
Microsoft Office Long Term Servicing Channel 2021
Microsoft Word 2016

References

Timeline

Frequently Asked Questions

What is CVE-2024-21379?

Microsoft Word Remote Code Execution Vulnerability

How severe is CVE-2024-21379?

CVE-2024-21379 has a CVSS score of 7.8/10 (HIGH severity). The EPSS model estimates a 1.72% probability of exploitation in the next 30 days.

How do I fix CVE-2024-21379?

Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.