Important 2022-11 archive

Executive Summary

Microsoft has released an update for Microsoft Office that provides enhanced security as a defense in depth measure. This update provides hardening around IRM-protected documents to ensure the trust-of-certificate chain.

Overview

Important
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
Category Defense in Depth
Released Nov 8 2022
Last Updated Nov 8 2022
Publicly Disclosed No
CISA KEV Not Listed
Known Exploits None Known

EPSS Score

No EPSS score available for this CVE.

View on FIRST.org

Affected Products

5 affected products
Product KB Article Severity Impact Restart Required
Microsoft Office 2013 RT Service Pack 1 3191875 (Security Update) Important Defense in Depth Maybe
Microsoft Office 2013 Service Pack 1 (32-bit editions) 3191875 (Security Update) Important Defense in Depth Maybe
Microsoft Office 2013 Service Pack 1 (64-bit editions) 3191875 (Security Update) Important Defense in Depth Maybe
Microsoft Office 2016 (32-bit edition) 3191869 (Security Update) Important Defense in Depth Maybe
Microsoft Office 2016 (64-bit edition) 3191869 (Security Update) Important Defense in Depth Maybe

Patches

2 patches
Article Type Restart
3191875 Security Update Maybe
3191869 Security Update Maybe

Known Exploits

Acknowledgments

None