CVE-2026-55947
Analyzed Analyzed - Analysis Complete

Heap-based Buffer Overflow in Microsoft Office Excel

Vulnerability report for CVE-2026-55947, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-14

Last updated on: 2026-07-15

Assigner: Microsoft Corporation

Description

Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-14
Last Modified
2026-07-15
Generated
2026-08-03
AI Q&A
2026-07-15
EPSS Evaluated
2026-08-02
NVD
EUVD

Affected Vendors & Products

Showing 14 associated CPEs
Vendor Product Version / Range
microsoft 365_apps *
microsoft 365_apps *
microsoft excel 2016
microsoft excel 2016
microsoft office_2019 *
microsoft office_2019 *
microsoft microsoft_365 *
microsoft office_2021 *
microsoft office_2021 *
microsoft office_2021 *
microsoft office_2024 *
microsoft office_2024 *
microsoft office_2024 *
microsoft office_online_server to 16.0.10417.20175 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-122 A heap overflow condition is a buffer overflow, where the buffer that can be overwritten is allocated in the heap portion of memory, generally meaning that the buffer was allocated using a routine such as malloc().

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-55947 is a heap-based buffer overflow vulnerability in Microsoft Office Excel. This flaw allows an unauthorized attacker to execute arbitrary code on a victim's system.

A heap-based buffer overflow occurs when a program writes more data to a buffer than it can hold, corrupting or overwriting adjacent memory. In this case, the vulnerability exists in Excel, and exploitation could lead to local code execution.

The CVSS v3.1 score for this vulnerability is 7.8, indicating a high severity. The vector AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H means the attack requires local access, low attack complexity, no privileges, user interaction, and has high impacts on confidentiality, integrity, and availability.

Detection Guidance

The provided context does not include specific detection methods or commands for identifying the presence of CVE-2026-55947 on a network or system. Detection typically involves checking for vulnerable versions of Microsoft Office Excel or using security tools that can identify heap-based buffer overflow vulnerabilities in Excel files.

For accurate detection, refer to Microsoft's official guidance or use their security tools, such as Microsoft Defender for Office 365 or the Microsoft Safety Scanner, which may include checks for this vulnerability.

Impact Analysis

If exploited, this vulnerability could have severe consequences for affected users.

  • An attacker could execute malicious code on your system, potentially gaining control over it.
  • Sensitive data stored or processed in Excel files could be accessed, modified, or stolen.
  • The attacker could install malware, create backdoors, or perform other malicious actions on your device.

Since the vulnerability requires user interaction (e.g., opening a malicious Excel file), the risk increases if you frequently handle untrusted Excel documents.

Compliance Impact

This vulnerability could impact compliance with several standards and regulations, depending on the context of its exploitation.

  • GDPR: If the vulnerability leads to unauthorized access or exfiltration of personal data, it could result in a data breach. Organizations may face fines or penalties for failing to protect personal data adequately.
  • HIPAA: For organizations handling protected health information (PHI), exploitation of this vulnerability could lead to unauthorized access to PHI, violating HIPAA's security and privacy rules.
  • Other standards like PCI DSS (for payment data) or industry-specific regulations may also be affected if sensitive data is compromised due to this vulnerability.

Organizations should assess their exposure to this vulnerability and apply patches or mitigations to maintain compliance with relevant regulations.

Mitigation Strategies

To mitigate CVE-2026-55947, follow these immediate steps:

  • Apply the latest security updates from Microsoft for Microsoft Office Excel. Refer to the Microsoft Update Guide for the specific patch related to this CVE.
  • Avoid opening Excel files from untrusted or unknown sources, as this vulnerability can be exploited through malicious files.
  • Use Microsoft Defender for Office 365 or other security solutions to scan for and block malicious Excel files.
  • Enable attack surface reduction rules in Microsoft Defender to prevent Office apps from creating child processes, which can help mitigate exploitation attempts.
  • Monitor Microsoft's official communications for additional guidance or workarounds if a patch is not immediately available.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-55947. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart