First published: Wed Jan 10 2018(Updated: )
Microsoft ChakraCore allows an attacker to bypass Control Flow Guard (CFG) in conjunction with another vulnerability to run arbitrary code on a target system, due to how the Chakra scripting engine handles accessing memory, aka "Scripting Engine Security Feature Bypass".
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft ChakraCore |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.