CVE-2017-11776High

Microsoft Outlook Information Disclosure Vulnerability

Published
October 10, 2017
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

An information disclosure vulnerability exists when Microsoft Outlook fails to establish a secure connection. An attacker who exploited the vulnerability could use it to obtain the email content of a user. The security update addresses the vulnerability by preventing Outlook from disclosing user email content.

🎯 Affected products2

  • Microsoft Outlook 2016 (32-bit edition)
  • Microsoft Outlook 2016 (64-bit edition)

✅ Remediation

KB4011162 (Security Update)

🔗 References (2)