Vulnerabilities > CVE-2020-0811 - Out-of-bounds Write vulnerability in Microsoft Chakracore and Edge

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
high complexity
microsoft
CWE-787

Summary

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge (HTML-based)L, aka 'Chakra Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0812.

Common Weakness Enumeration (CWE)

The Hacker News

idTHN:3D9F7E987C17A81C15F0745D108233C7
last seen2020-03-11
modified2020-03-11
published2020-03-11
reporterThe Hacker News
sourcehttps://thehackernews.com/2020/03/microsoft-patch-tuesday-march-2020.html
titleMicrosoft Issues March 2020 Updates to Patch 115 Security Flaws