Microsoft Office
ADV220003 — Microsoft Defense in Depth Update
Important
2022-11 archive
Executive Summary
Microsoft has released an update for Microsoft Office that provides enhanced security as a defense in depth measure. This update provides hardening around IRM-protected documents to ensure the trust-of-certificate chain.
Overview
Important
MS Severity
Not Exploited
MS Exploit Status
Less Likely
MS Exploit Likelihood
EPSS Score
No EPSS score available for this CVE.
View on FIRST.orgAffected Products
5 affected products
| Product | KB Article | Severity | Impact | Restart Required |
|---|---|---|---|---|
| Microsoft Office 2013 RT Service Pack 1 | 3191875 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2013 Service Pack 1 (32-bit editions) | 3191875 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2013 Service Pack 1 (64-bit editions) | 3191875 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2016 (32-bit edition) | 3191869 (Security Update) |
Important | Defense in Depth | Maybe |
| Microsoft Office 2016 (64-bit edition) | 3191869 (Security Update) |
Important | Defense in Depth | Maybe |
Patches
2 patches
| Article | Type | Restart |
|---|---|---|
3191875 |
Security Update | Maybe |
3191869 |
Security Update | Maybe |
Known Exploits
No known exploits have been linked for this CVE yet. When available, exploit references will be sourced from public repositories and may be unverified, incomplete, or non-functional. Always review code carefully before use in any environment.
Acknowledgments
None
References
On This Page