PT-2016-2973 · Microsoft · Chakra Javascript Engine+1

Published

2016-11-08

·

Updated

2025-02-10

·

CVE-2016-7201

CVSS v4.0

7.7

High

VectorAV:N/AC:H/AT:N/PR:N/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions Microsoft Edge (affected versions not specified)
Description The issue is caused by a buffer overflow in the Chakra JavaScript engine of Microsoft Edge, allowing a remote attacker to execute arbitrary code or cause a denial of service (memory corruption) via a specially crafted website.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

DoS

RCE

Type Confusion

Buffer Overflow

Weakness Enumeration

Related Identifiers

BDU:2016-02404
CVE-2016-7201
GHSA-4F5G-J7WG-7W8J

Affected Products

Chakra Javascript Engine
Edge