A critical security flaw, CVE-2025-21298, in Microsoft’s OLE technology enables remote code execution through a zero-click vulnerability in Outlook. Attackers can exploit this memory corruption issue by sending malicious RTF emails, triggering the flaw when previewed. Affecting multiple Windows versions, Microsoft has released patches, and users are urged to apply them and take additional precautions to mitigate risks.

Can AI Break the “Measurement Paradigm?”
How do we know if AI use in health care actually makes patients better? Chip talks with Dr. David Bates — a veteran physician leader


