CVE-2018-8380: High severity chakracore vulnerability
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8266, CVE-2018-8381, CVE-2018-8384.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-8380?
CVE-2018-8380 is classified as a critical remote code execution vulnerability.
How do I fix CVE-2018-8380?
To address CVE-2018-8380, users should apply the latest security patches provided by Microsoft for Edge and ChakraCore.
Which products are affected by CVE-2018-8380?
CVE-2018-8380 affects Microsoft Edge and ChakraCore versions up to 1.10.1.
What is the impact of CVE-2018-8380?
Successful exploitation of CVE-2018-8380 allows an attacker to execute arbitrary code on the affected system.
Is there a workaround for CVE-2018-8380?
Currently, there are no known workarounds for CVE-2018-8380 other than applying available security updates.