CVE-2016-7189: Buffer Overflow
Published Oct 14, 2016
·Updated
The Chakra JavaScript engine in Microsoft Edge allows remote attackers to execute arbitrary code via a crafted web site, aka "Scripting Engine Remote Code Execution Vulnerability."
Affected Software
2 affected componentsFixes available
nuget/Microsoft.ChakraCore<1.2.1
1.2.1
Microsoft Edge
Event History
Oct 14, 2016
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
Description
May 14, 2022
Advisory Published
02:22 AM
Frequently Asked Questions
1
What is the severity of CVE-2016-7189?
CVE-2016-7189 has a critical severity rating, indicating a high risk of exploitation.
2
How do I fix CVE-2016-7189?
To fix CVE-2016-7189, update Microsoft Edge to the latest version or apply the appropriate security patches.
3
What type of vulnerability is CVE-2016-7189?
CVE-2016-7189 is a remote code execution vulnerability in the Chakra JavaScript engine of Microsoft Edge.
4
Who is affected by CVE-2016-7189?
Users and systems running vulnerable versions of Microsoft Edge and ChakraCore are affected by CVE-2016-7189.
5
Can CVE-2016-7189 be exploited through a web browser?
Yes, CVE-2016-7189 can be exploited by a remote attacker via a crafted website accessed through Microsoft Edge.