CVE-2018-8459: High severity microsoft edge beta vulnerability
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8354, CVE-2018-8391, CVE-2018-8456, CVE-2018-8457.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-8459?
CVE-2018-8459 has been assigned a severity rating of critical due to its potential for remote code execution.
How do I fix CVE-2018-8459?
To fix CVE-2018-8459, users should update Microsoft Edge or ChakraCore to a version that is not vulnerable.
Which software is affected by CVE-2018-8459?
CVE-2018-8459 affects Microsoft Edge and versions of ChakraCore up to and including 1.10.1.
What types of attacks can exploit CVE-2018-8459?
CVE-2018-8459 can be exploited through crafted web content that triggers memory corruption in the ChakraCore scripting engine.
Was there a patch released for CVE-2018-8459?
Yes, Microsoft released a patch for CVE-2018-8459 as part of their regular security updates.