CVE-2017-8658: Buffer Overflow
Published Aug 11, 2017
·Updated
A remote code execution vulnerability exists in the way that the Chakra JavaScript engine renders when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability".
Affected Software
2 affected componentsFixes available
nuget/Microsoft.ChakraCore<1.6.1
1.6.1
Microsoft ChakraCore<=1.7.0
Remediation
Event History
Aug 11, 2017
CVE Published
via MITRE·01:00 AM
Data Sourced
via MITRE·01:00 AM
DescriptionWeakness
May 17, 2022
Advisory Published
01:57 AM
Frequently Asked Questions
1
What is the severity of CVE-2017-8658?
CVE-2017-8658 has a critical severity rating due to its potential for remote code execution.
2
How do I fix CVE-2017-8658?
To fix CVE-2017-8658, update to the latest version of Microsoft ChakraCore that addresses this vulnerability.
3
What types of systems are affected by CVE-2017-8658?
CVE-2017-8658 affects systems running versions of Microsoft ChakraCore up to 1.7.0.
4
Can CVE-2017-8658 be exploited remotely?
Yes, CVE-2017-8658 can be exploited remotely, allowing an attacker to execute arbitrary code.
5
What are the potential impacts of CVE-2017-8658?
The potential impacts of CVE-2017-8658 include unauthorized access, data breaches, and system compromise.