Record summary

CVE-2018-8279 has a selected CVSS score of 7.5 (high); EIP currently links 1 catalogued exploit.

Description

A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8125, CVE-2018-8262, CVE-2018-8274, CVE-2018-8275, CVE-2018-8301.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Affected products and versions

2
ProductSourceVersion rangeStatus
CVE ListChakraCoreaffected
CVE ListWindows 10 Version 1703 for 32-bit Systemsaffected
Windows 10 Version 1703 for x64-based Systemsaffected
Windows 10 Version 1709 for 32-bit Systemsaffected
Windows 10 Version 1709 for x64-based Systemsaffected
Windows 10 Version 1803 for 32-bit Systemsaffected
Windows 10 Version 1803 for x64-based Systemsaffected

Proofs of concept

1

Catalogued exploits

ExploitDBMicrosoft Edge Chakra JIT - Parameter Scope Parsing Type ConfusionExploitDB exploitby Google Security ResearchNot analyzed1 file
ExploitDB

PoC details

References

5