CVE-2017-0223: Buffer Overflow
Published May 15, 2017
·Updated
A remote code execution vulnerability exists in Microsoft Chakra Core in the way JavaScript engines render when handling objects in memory. aka "Scripting Engine Memory Corruption Vulnerability". This vulnerability is unique from CVE-2017-0252.
Affected Software
2 affected componentsFixes available
nuget/Microsoft.ChakraCore<1.4.4
1.4.4
Microsoft Edge
Remediation
Patch Available
Event History
May 15, 2017
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
DescriptionWeakness
May 17, 2022
Advisory Published
02:35 AM
Frequently Asked Questions
1
What is the severity of CVE-2017-0223?
CVE-2017-0223 has a high severity rating due to its potential for remote code execution.
2
How do I fix CVE-2017-0223?
To fix CVE-2017-0223, update Microsoft ChakraCore to version 1.4.4 or later.
3
What software is affected by CVE-2017-0223?
CVE-2017-0223 affects Microsoft ChakraCore and Microsoft Edge browsers.
4
Is CVE-2017-0223 a unique vulnerability?
Yes, CVE-2017-0223 is unique and distinct from CVE-2017-0252.
5
What type of vulnerability is CVE-2017-0223?
CVE-2017-0223 is classified as a scripting engine memory corruption vulnerability.