First published: Wed Jul 11 2018(Updated: )
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore. This CVE ID is unique from CVE-2018-8242, CVE-2018-8287, CVE-2018-8288, CVE-2018-8291, CVE-2018-8296, CVE-2018-8298.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
nuget/Microsoft.ChakraCore | <1.10.1 | 1.10.1 |
Microsoft Chakra | <1.10.1 | |
ChakraCore | <1.10.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2018-8283 is classified as a critical remote code execution vulnerability.
To fix CVE-2018-8283, users should update Microsoft ChakraCore to version 1.10.1 or later.
CVE-2018-8283 affects all versions of ChakraCore prior to 1.10.1.
The impact of CVE-2018-8283 includes potential remote code execution attacks that can compromise system security.
As of now, there are no publicly disclosed exploits for CVE-2018-8283.