Microsoft Office
ADV220003 — Microsoft Defense in Depth Update
Important
2022-11 archive
Executive Summary
Microsoft has released an update for Microsoft Office that provides enhanced security as a defense in depth measure. This update provides hardening around IRM-protected documents to ensure the trust-of-certificate chain.
Overview
Important
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
EPSS Score
No EPSS score available for this CVE.
View on FIRST.orgAffected Products
5 affected products
| Product | KB Article | Severity | Impact | Restart Required |
|---|---|---|---|---|
| Microsoft Office 2013 RT Service Pack 1 | 3191875 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2013 Service Pack 1 (32-bit editions) | 3191875 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2013 Service Pack 1 (64-bit editions) | 3191875 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2016 (32-bit edition) | 3191869 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2016 (64-bit edition) | 3191869 (Security Update) |
Important | Defense in Depth | Maybe |
Patches
2 patches
| Article | Type | Restart |
|---|---|---|
3191875 |
Security Update | Maybe |
3191869 |
Security Update | Maybe |
Exploits & PoC
No public exploit or PoC has been linked for this CVE yet. When available, references are sourced from public repositories and may be unverified or non-functional — review carefully before use.
Detection Rules
No public Sigma or Nuclei detection rule has been mapped to this CVE yet. Coverage is concentrated on exploited / high-profile vulnerabilities; check SigmaHQ for updates.
Acknowledgments
None
References
On This Page