Microsoft Edge Chakra Eval Integer Overflow (CVE-2017-8641)

An integer overflow vulnerability exists in Microsoft Edge Chakra JavaScript Engine. The vulnerability is due to an overly large size of the eval() function argument. A remote attacker could exploit this vulnerability by enticing the target user to open a specially crafted web page.

from Check Point Update Services Advisories http://ift.tt/2wBDcfM

No comments:

Post a Comment

Hackers Use LinkedIn Messages to Spread RAT Malware Through DLL Sideloading

Cybersecurity researchers have uncovered a new phishing campaign that exploits social media private messages to propagate malicious payloads...