PT-2018-1493 · W3C+1 · Webaudio+1

Published

2018-08-14

·

Updated

2018-10-12

·

CVE-2018-8370

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Edge (affected versions not specified)
Description A information disclosure issue exists due to improper handling of audio requests by the WebAudio library. This could allow a remote attacker to disclose protected information. An attacker who successfully exploits this issue might be able to read privileged data across trust boundaries.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2018-01044
CVE-2018-8370

Affected Products

Edge
Webaudio