MS16-042: Description of the security update for Office Web Apps Server 2013: April 12, 2016


This security update resolves vulnerabilities in Microsoft Office that could allow remote code execution if a user opens a specially crafted Office file. To learn more about these vulnerabilities, see Microsoft Security Bulletin MS16-042.

Note To apply this security update, you must have the release version of Service Pack 1 for Microsoft Office Web Apps Server 2013 installed on the computer.

For a complete list of affected versions of Microsoft Office software, see Microsoft Knowledge Base article KB3148775.

Improvements and fixes

This security update contains improvements and fixes for the following nonsecurity issues:
  • After you save a document as a .pdf file in Word 2013, the font name in the .pdf file doesn't appear as the corresponding PostScript name.

How to get and install the update

Method 1: Microsoft Update

This update is available from Microsoft Update. When you turn on automatic updating, this update will be downloaded and installed automatically. For more information about how to get security updates automatically, see the "Turn on automatic updating in Control Panel" section of this Safety & Security Center article.

Method 2: Microsoft Download Center

You can get the stand-alone update package through the Microsoft Download Center. Follow the installation instructions on the download page to install the update.

More Information

Security update deployment information

For deployment information about this update, see Microsoft Knowledge Base article KB3148775.

Security update replacement information

This security update replaces previously released security update KB3114821.

File hash information

Package NamePackage Hash SHA 1Package Hash SHA 2

File information

For a list of the files that are provided in this cumulative update KB3114934, download the file information for update 3114934.