First published: Thu Feb 09 2023(Updated: )
Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
Credit: secure@microsoft.com secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Edge | <110.0.1587.41 | |
Google Android | ||
Microsoft Edge Chromium | <110.0.1587.41 | |
<110.0.1587.41 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2023-23374 is a remote code execution vulnerability in Microsoft Edge (Chromium-based) that allows an attacker to execute arbitrary code on the affected system.
CVE-2023-23374 has a severity rating of 8.3, which is considered high.
Microsoft Edge for Android versions prior to 110.0.1587.41 and Microsoft Edge (Chromium-based) versions prior to 110.0.1587.41 are affected by CVE-2023-23374.
To fix CVE-2023-23374, update Microsoft Edge for Android to version 110.0.1587.41 or later, or update Microsoft Edge (Chromium-based) to version 110.0.1587.41 or later.
You can find more information about CVE-2023-23374 on the Microsoft Security Response Center website (https://msrc.microsoft.com/update-guide/vulnerability/CVE-2023-23374) and the Gentoo Security website (https://security.gentoo.org/glsa/202309-17).