Untrusted Pointer Dereference in Microsoft Office Word by Microsoft
CVE-2026-45457
7.8HIGH
Key Information:
- Vendor
Microsoft
- Status
- Vendor
- CVE Published:
- 9 June 2026
What is CVE-2026-45457?
An untrusted pointer dereference vulnerability in Microsoft Office Word allows a malicious actor to potentially execute arbitrary code on the system. This flaw can be exploited if the user opens a specially crafted file, leading to local code execution and possible system compromise. Users are advised to update their software to mitigate associated risks. For detailed guidance and remediation, refer to the official advisory.
Affected Version(s)
Microsoft 365 Apps for Enterprise 32-bit Systems 16.0.1
Microsoft Office 365 for Mac 1.0.0 < 16.110.26061317
Microsoft Office LTSC for Mac 2021 16.0.1 < 16.110.26061317