CVE-2020-16918HighCVSS 7.8

Base3D Remote Code Execution Vulnerability

Published
October 13, 2020
Last Modified
—

🔗 CVE IDs covered (1)

📋 Description

A remote code execution vulnerability exists when the Base3D rendering engine improperly handles memory. An attacker who successfully exploited the vulnerability would gain execution on a victim system. The security update addresses the vulnerability by correcting how the Base3D rendering engine handles memory.

🎯 Affected products3

  • 3D Viewer
  • Microsoft 365 Apps for Enterprise for 32-bit Systems
  • Microsoft 365 Apps for Enterprise for 64-bit Systems

✅ Remediation

KBClick to Run (Security Update) KBRelease Notes (Security Update)

🔗 References (2)