CVE-2019-0861: High severity microsoft edge beta vulnerability
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0806, CVE-2019-0810, CVE-2019-0812, CVE-2019-0829, CVE-2019-0860.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2019-0861?
CVE-2019-0861 is classified as a critical remote code execution vulnerability.
How do I fix CVE-2019-0861?
To mitigate CVE-2019-0861, users should update Microsoft Edge or Microsoft ChakraCore to the latest version that patches this vulnerability.
What products are affected by CVE-2019-0861?
CVE-2019-0861 primarily affects Microsoft Edge and versions of Microsoft ChakraCore prior to 1.11.8.
Is CVE-2019-0861 exploitable remotely?
Yes, CVE-2019-0861 can be exploited remotely if the user visits a malicious website.
Are there any alternative mitigations for CVE-2019-0861?
While updating is the primary mitigation for CVE-2019-0861, users can also consider disabling scripting features in the browser as an alternative.