KLA12122
Multiple vulnerabilities in Microsoft Browser

Updated: 03/16/2021
Detect date
?
03/15/2021
Severity
?
Warning
Description

Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. A heap buffer overflow vulnerability in tab groups can be exploited to cause denial of service.
  2. A use after free vulnerability in WebRTC can be exploited to cause denial of service or execute arbitrary code.
  3. A use after free vulnerability in Blink can be exploited to cause denial of service or execute arbitrary code.
Affected products

Microsoft Edge (Chromium-based)

Solution

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Original advisories

CVE-2021-21192
CVE-2021-21191
CVE-2021-21193

Impacts
?
ACE 
[?]

DoS 
[?]
Related products
Microsoft Edge
CVE-IDS
?
CVE-2021-211930.0Unknown
CVE-2021-211910.0Unknown
CVE-2021-211920.0Unknown
Find out the statistics of the vulnerabilities spreading in your region