[German]On August 12, 2025 (the second Tuesday of the month, Microsoft Patch Day), Microsoft released several security updates for Microsoft Office 2016, as well as the C2R variants (Office 2016-2021 and 365) and other products. This month, serious vulnerabilities in Office were fixed. Below is an overview of the available updates.
Advertising
An overview of the updates can be found on this website (and here for this month). Details are documented in the linked KB articles. The updates are available for the installable MSI version of Microsoft Office (the Click-to-Run packages obtain the updates via other channels). Office 2019/2021/2024 does not appear in the list because it is distributed via Click-to-Run packages and receives security updates via the Office Update feature.
Vulnerabilities in Office
Various remote code execution vulnerabilities in Microsoft Office have been closed by the updates (see also this Talos article).
Office 2016
The following security updates have been released for Microsoft Office 2016.
- KB5002758: Security update for Excel 2016 that addresses the RCE vulnerabilities CVE-2025-53739, CVE-2025-53737, CVE-2025-53735 and CVE-2025-53741.
- KB5002756: Security update for Office 2016 that addresses the RCE vulnerabilities CVE-2025-53740 and CVE-2025-53731.
- KB5002765: Security update for PowerPoint 2016 that addresses the RCE vulnerability CVE-2025-53761.
- KB5002763: Security update for Word 2016 that addresses the RCE vulnerabilities CVE-2025-53738, CVE-2025-53736 and CVE-2025-53733.
On August 5, 2025, there was also an update KB5002761 for OneNote 2016, which fixes a problem where users are blocked when they select a link in OneNote that refers to a folder. Details about the Office updates and the direct download addresses for the updates can be found in the linked KB articles.
Office C2R Updates
For Click-2-Run installation packages, updates are obtained and installed directly via the respective Office package. According to this Microsoft website, the following security updates have been released:
- Current Channel: Version 2507 (Build 19029.20184)
- Monthly Enterprise Channel: Version 2506 (Build 18925.20216)
- Monthly Enterprise Channel: Version 2505 (Build 18827.20230)
- Monthly Enterprise Channel: Version 2504 (Build 18730.20260)
- Semi-Annual Enterprise Channel (Preview): Version 2502 (Build 18526.20546)
- Semi-Annual Enterprise Channel: Version 2502 (Build 18526.20546)
- Semi-Annual Enterprise Channel: Version 2408 (Build 17928.20654)
- Semi-Annual Enterprise Channel: Version 2402 (Build 17328.20882)
- Office 2024 Retail: Version 2507 (Build 19029.20184)
- Office 2021 Retail: Version 2507 (Build 19029.20184)
- Office 2019 Retail: Version 2507 (Build 19029.20184)
- Office 2016 Retail: Version 2507 (Build 19029.20184)
- Office LTSC 2024 Volume Licensed: Version 2408 (Build 17932.20496)
- Office LTSC 2021 Volume Licensed: Version 2108 (Build 14334.20244)
- Office 2019 Volume Licensed: Version 1808 (Build 10417.20042)
The website linked above lists the security vulnerabilities that have been fixed for individual Office modules. For volume licenses, the respective builds are listed on this Microsoft page.
Advertising
Updates for SharePoint Server
Microsoft has also released security updates for various versions of Microsoft SharePoint Server.
SharePoint Server Subscription Edition
- SharePoint Server Subscription Edition: KB5002773
Microsoft SharePoint Server 2019
Microsoft SharePoint Server 2016
- SharePoint Enterprise Server 2016: KB5002771
- SharePoint Enterprise Server 2016 Language Pack: KB5002772
Office Online Server
- Office Online Server: KB5002752
Similar articles:
Microsoft Security Update Summary (August 12, 2025)
Patchday: Windows 10/11 Updates (August 12, 2025)
Patchday: Windows Server Updates (August 12, 2025)
Patchday: Microsoft Office Updates (August 12, 2025)
Advertising