CVE-2023-29333: Microsoft Access Denial of Service Vulnerability

Overview

Severity
Low (CVSS 3.3)
CVSS Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L/E:U/RL:O/RC:C
Category
Denial of Service
Exploit Status
Not Exploited
Exploitation Likelihood
Less Likely
Patch Tuesday
2023-May
Released
2023-05-09
EPSS Score
0.35% (percentile: 57.8%)

FAQ

According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of availability (A:L)? What does that mean for this vulnerability? The performance can be interrupted and/or reduced, but the attacker cannot fully deny service.

Affected Products (6)

Microsoft Office

  • Microsoft Office 2019 for 32-bit editions
  • Microsoft Office 2019 for 64-bit editions
  • Microsoft 365 Apps for Enterprise for 32-bit Systems
  • Microsoft 365 Apps for Enterprise for 64-bit Systems
  • Microsoft Office LTSC 2021 for 64-bit editions
  • Microsoft Office LTSC 2021 for 32-bit editions

Acknowledgments

Baris Reyhan with <a href="https://www.netpack.nl/">Netpack B.V.</a>

Revision History

  • 2023-05-09: Information published.