CVE-2018-8466: High severity chakracore vulnerability
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8367, CVE-2018-8465, CVE-2018-8467.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-8466?
CVE-2018-8466 is rated as critical due to its potential for remote code execution.
How do I fix CVE-2018-8466?
To fix CVE-2018-8466, update Microsoft Edge to the latest version or upgrade ChakraCore to version 1.11.1 or later.
Which software is affected by CVE-2018-8466?
CVE-2018-8466 affects Microsoft Edge and versions of ChakraCore prior to 1.11.1.
Can CVE-2018-8466 be exploited on Windows 10?
CVE-2018-8466 can be exploited on supported versions of Microsoft Edge running on Windows 10.
What types of attacks are possible due to CVE-2018-8466?
CVE-2018-8466 allows attackers to execute arbitrary code remotely on the target system.