[German]On November 12, 2024 (second Tuesday of the month, Microsoft Patchday), Microsoft released several security-related updates for Microsoft Office 2016, as well as the C2R variants (Office 2016-2021 and 365) and other products. Below you will find an overview of the available updates.
Advertising
An overview of the updates can be found on this website (and here for this month). Details are documented in the linked KB articles. The updates are available for the installable MSI version of Microsoft Office (the Click-to-Run packages receive the updates via other channels). Office 2019/2021/2024 do not appear in the list as they are distributed via Click-to-Run packages and receive security updates via the Office Update feature.
Office 2016
The following security updates have been released for Office 2016.
- KB5002653: Security update for Excel 2016, which fixes a whole series of vulnerabilities regarding Remote Code Execution (RCE). A blog reader has contacted me and complained that after installing the update, add-ins are no longer loaded when Excel is started (see also Excel 2016 can no longer load add-ins after Nov. 2024 update KB5002653).
- KB5002642: Security update for Office 2016, which fixes two vulnerabilities (CVE-2024-49031, CVE-2024-49032) in Microsoft Office graphics regarding remote code execution.
- KB5002619: This update fixes a security issue (CVE-2024-49033) in Microsoft Word to prevent security features from being bypassed.
Details on the Office updates and the direct download addresses for the updates can be found in the linked KB articles.
Office C2R Updates
For the Click-2-Run installation packages, the updates are obtained and installed directly via the respective Office package. According to this Microsoft website, the following security updates have been released:
- Current Channel: Version 2410 (Build 18129.20158)
- Monthly Enterprise Channel: Version 2409 (Build 18025.20214)
- Monthly Enterprise Channel: Version 2408 (Build 17928.20286)
- Semi-Annual Enterprise Channel (Preview): Version 2408 (Build 17928.20286)
- Semi-Annual Enterprise Channel: Version 2402 (Build 17328.20648)
- Semi-Annual Enterprise Channel: Version 2308 (Build 16731.20948)
- Office 2024 Retail: Version 2410 (Build 18129.20158)
- Office 2021 Retail: Version 2410 (Build 18129.20158)
- Office 2019 Retail: Version 2410 (Build 18129.20158)
- Office 2016 Retail: Version 2410 (Build 18129.20158)
- Office LTSC 2024 Volume Licensed: Version 2408 (Build 17932.20162)
- Office LTSC 2021 Volume Licensed: Version 2108 (Build 14332.20812)
- Office 2019 Volume Licensed: Version 1808 (Build 10416.20007)
The website linked above lists the fixed security vulnerabilities for individual Office modules.
For volume licenses, the respective builds are listed on this Microsoft page. The following builds are considered published for October 8, 2024.
Advertising
- Office LTSC 2024: Version 2408 (Build 17932.20162)
- Office 2024 Version 2410 (Retail): Version 2410 (Build 18129.20158)
- Office LTSC 2021 and Office 2021: Version 2108 (Build 14332.20812)
- Office 2019 Volumenlizenz: Version 1808 (Build 10416.20007)
- Office 2016 C2R and Office 2019: Version 2410 (Build 18129.20158)
Further updates for Office/SharePoint Server
Microsoft has also released security updates for various versions of Microsoft SharePoint Server.
SharePoint Server Subscription Edition
- SharePoint Server Subscription Edition: KB5002651
Microsoft SharePoint Server 2019
- SharePoint Server 2019: KB5002650
Microsoft SharePoint Server 2016
- SharePoint Enterprise Server 2019: KB5002654
Office Online Server
-
Office Online Server: KB5002648
Similar articles:
Microsoft Security Update Summary (November 12, 2024)
Patchday: Windows 10/Server Updates (November 12, 2024)
Patchday: Windows 11/Server 2022 Updates (November 12, 2024)
Patchday: Windows Server 2012 / R2 and Windows 7 (November 12, 2024)
Patchday: Microsoft Office Updates (November 12, 2024)
Advertising