This security update resolves vulnerabilities in Microsoft Office that could allow remote code execution if an attacker convinces a user to open or preview a specially crafted Microsoft Word file in an affected version of Office.
This security update also contains fixes for the following nonsecurity issues:
Improvements and fixes
This security update contains the following improvement:- Improves the English and Welsh proofing tools in SharePoint Server 2013. Additionally, this update contains lexical improvements to the English and the Welsh spelling lexicon.
This security update also contains fixes for the following nonsecurity issues:
- The "Discover and Hold content" feature does not work correctly in SharePoint 2010 if it consumes SharePoint 2013 search applications.
- The DocumentSetTemplate functionality does not work by using the Client Side Object Model (CSOM) API.
- Content Organizer routes documents that have a modified time in the destination set to server time instead of UTC time.
- Hybrid search fails because the query time-out is 60 seconds in SharePoint 2013.
- You cannot view PDF files from search results by using Internet Explorer 8, Internet Explorer 9, Internet Explorer 10, or Internet Explorer 11.
- URLs that contain special characters (such as "é", "è", or "ç") cannot be deleted from Authoritative pages.
- When you try to crawl and index an .xml file that has an encoding declaration in the XML declaration, the process fails and you receive an "Invalid XML stream" error.
- When you try to create a publishing sub-site, you receive a "Forbidden" error even if you have full control permission.
- Date refiners have the incorrect translation for French.