visio

  1. CVE-2025-54907: Visio Heap Overflow - Patch and Mitigation Guide

    Microsoft’s Security Response Center has published an advisory for CVE-2025-54907, describing a heap-based buffer overflow in Microsoft Office Visio that can allow an unauthorized attacker to execute code in the context of the user who opens a malicious file. This is a document‑parser...
  2. CVE-2025-53734: Visio Use-After-Free RCE - Patch Now to Prevent Exploitation

    Microsoft has confirmed a use‑after‑free vulnerability in Microsoft Office Visio — tracked as CVE‑2025‑53734 — that can be triggered when a user opens a specially crafted Visio file and may allow an attacker to execute code in the context of the current user; Microsoft’s advisory entry is live...
  3. CVE-2025-53730: Visio Use-After-Free RCE and Patch Guide

    Microsoft has published a security advisory for CVE-2025-53730, a use‑after‑free vulnerability in Microsoft Office Visio that Microsoft describes as allowing an unauthorized attacker to execute code locally when a specially crafted Visio file is opened. (msrc.microsoft.com) Background Microsoft...
  4. Microsoft 365 Blocks ActiveX by Default in April 2025 to Enhance Security

    Here’s a quick summary of the information from the TechRadar article: ActiveX Blocked by Default in Microsoft 365 (Starting April 2025): Microsoft is disabling ActiveX by default in Microsoft 365 apps (Word, Excel, PowerPoint, and Visio). Reason: ActiveX posed major security risks, such as...
  5. Navigating Microsoft's Trials: A Windows User's Subscription Nightmare

    In an age where technology rules supreme, you would think that signing up for a trial subscription—and more importantly, canceling it—would be a walk in the park. Let’s paint a picture of despair that one Windows user, in their quest to utilize Visio, discovered when navigating the murky waters...
  6. MS13-023 - Critical : Vulnerability in Microsoft Visio Viewer 2010 Could Allow Remote Code...

    Severity Rating: Critical Revision Note: V1.2 (September 18, 2013): Corrected language in the vulnerability FAQ, How could an attacker exploit the vulnerability? This is an informational change only. Summary: This security update resolves a privately reported vulnerability in Microsoft Office...
  7. MS13-023 - Critical : Vulnerability in Microsoft Visio Viewer 2010 Could Allow Remote Code...

    Severity Rating: Critical Revision Note: V1.2 (September 18, 2013): Corrected language in the vulnerability FAQ, How could an attacker exploit the vulnerability? This is an informational change only. Summary: This security update resolves a privately reported vulnerability in Microsoft Office...
  8. MS13-044 - Important : Vulnerability in Microsoft Visio Could Allow Information Disclosure...

    Severity Rating: Important Revision Note: V1.1 (May 23, 2013): Revised bulletin to announce a detection change for the Microsoft Visio 2010 (2810068) update. This is a detection change only. There were no changes to the update files. Customers who have successfully installed the update do not...
  9. May 2013 Security Bulletin Webcast, Q&A, and Slide Deck

    For those who couldn’t attend the live webcast, today we’re publishing the Link Removed. We fielded 13 questions on various topics during the webcast, with specific bulletin questions focusing primarily on Internet Explorer (MS13-037 and MS13-038) and Visio (MS13-044). We invite...
  10. MS13-044 - Important : Vulnerability in Microsoft Visio Could Allow Information Disclosure (2834692)

    Severity Rating: Important Revision Note: V1.0 (May 14, 2013): Bulletin published Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow information disclosure if a user opens a specially crafted Visio...
  11. MS13-044 - Important : Vulnerability in Microsoft Visio Could Allow Information Disclosure (2834692)

    Severity Rating: Important Revision Note: V1.0 (May 14, 2013): Bulletin published Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow information disclosure if a user opens a specially crafted Visio...
  12. MS13-023 - Critical : Vulnerability in Microsoft Visio Viewer 2010 Could Allow Remote Code Execution

    Severity Rating: Critical Revision Note: V1.0 (March 12, 2013): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Visio...
  13. Summary for August 2012 - Version: 3.0

    Revision Note: V3.0 (December 11, 2012): For MS12-057, replaced the KB2553260 and KB2589322 updates with the KB2687501 and KB2687510 updates respectively for all affected editions of Microsoft Office 2010. For MS12-059, replaced the KB2597171 update with the KB2687508 update for all affected...
  14. Windows 8 x64 KB Updates as of Feb 3 2013 (w/Office 2013)

    Use the following KB numbers (Copy and Paste) to Google or Bing or find them in the Microsoft Knowledgebase. Cumulative Security Update for Internet Explorer 10 for Windows 8 for x64-based Systems (KB2761465) Definition Update for Windows Defender - KB2267602 (Definition 1.143.1070.0)...
  15. MS12-059 - Important : Vulnerability in Microsoft Visio Could Allow Remote Code Execution (2733918)

    Severity Rating: Important Revision Note: V1.0 (August 14, 2012): Bulletin published. Summary: This security update resolves a privately reported vulnerability in Microsoft Office. The vulnerability could allow remote code execution if a user opens a specially crafted Visio...
  16. MS12-015 - Important : Vulnerabilities in Microsoft Visio Viewer 2010 Could Allow Remote Code Execut

    Severity Rating: Important Revision Note: V1.0 (February 14, 2012): Bulletin published. Summary: This security update resolves five privately reported vulnerabilities in Microsoft Office. The vulnerabilities could allow remote code execution if a user opens a specially...
  17. MS11-055 - Important : Vulnerability in Microsoft Visio Could Allow Remote Code Execution (2560847)

    Severity Rating: Important Revision Note: V1.0 (July 12, 2011): Bulletin published. Summary: This security update resolves a publicly disclosed vulnerability in Microsoft Visio. The vulnerability could allow remote code execution if a user opens a legitimate Visio file that...
  18. MS11-060 - Important : Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2560978

    Severity Rating: Important Revision Note: V1.0 (August 9, 2011): Bulletin published. Summary: This security update resolves two privately reported vulnerabilities in Microsoft Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted...
  19. MS11-060 - Important: Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2560978)

    Severity Rating: Important - Revision Note: V1.0 (August 9, 2011): Bulletin published.Summary: This security update resolves two privately reported vulnerabilities in Microsoft Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted Visio file. An...
  20. MS11-060 - Important: Vulnerabilities in Microsoft Visio Could Allow Remote Code Execution (2560978)

    Bulletin Severity Rating:Important - This security update resolves two privately reported vulnerabilities in Microsoft Visio. The vulnerabilities could allow remote code execution if a user opens a specially crafted Visio file. An attacker who successfully exploited this vulnerability could gain...