CVE-2017-8659

Description

Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to obtain information to further compromise the users system due to the Chakra scripting engine not properly handling objects in memory, aka Scripting Engine Information Disclosure Vulnerability.

Risk Information

Base Score
4.4
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
12.825

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2017-8659,CVE-2017-8658 are fixed in Nuget - Microsoft.ChakraCore 1.6.1Windows
Vulnerabilities CVE-2017-8659,CVE-2017-8658 are fixed in Nuget - Microsoft.ChakraCore for Linux 1.6.1Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234