CVE-2020-23315: High severity microsoft chakra vulnerability
Published Jan 20, 2022
·Updated
There is an ASSERTION (pFuncBody->GetYieldRegister() == oldYieldRegister) failed in Js::DebugContext::RundownSourcesAndReparse in ChakraCore version 1.12.0.0-beta.
Affected Software
1 affected component
Microsoft ChakraCore=1.12.0.0-beta
Event History
Jan 20, 2022
CVE Published
via MITRE·09:14 PM
Data Sourced
via MITRE·09:14 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-23315.
2
What is the severity of CVE-2020-23315?
The severity of CVE-2020-23315 is high with a CVSS score of 7.5.
3
Which software versions are affected by CVE-2020-23315?
ChakraCore version 1.12.0.0-beta is affected by CVE-2020-23315.
4
What is the description of CVE-2020-23315?
CVE-2020-23315 is a vulnerability in ChakraCore that allows an assertion failure in Js::DebugContext::RundownSourcesAndReparse.
5
Is there any reference available for CVE-2020-23315?
Yes, you can find more information about CVE-2020-23315 at the following link: [link](https://github.com/microsoft/ChakraCore/issues/6453).