Description
Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service, gain privileges.
Below is a complete list of vulnerabilities:
- Use after free in Extensions can be exploited to cause denial of service or execute arbitrary code.
- Use after free in ANGLE can be exploited to cause denial of service or execute arbitrary code.
- Heap buffer overflow in GPU can be exploited to cause denial of service.
- Use after free in Safe Browsing can be exploited to cause denial of service or execute arbitrary code.
- Use after free in New Tab Page can be exploited to cause denial of service or execute arbitrary code.
- Use after free in Browser UI can be exploited to cause denial of service or execute arbitrary code.
- Use after free in Blink Layout can be exploited to cause denial of service or execute arbitrary code.
- Use after free in Splitscreen can be exploited to cause denial of service or execute arbitrary code.
- An elevation of privilege vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to gain privileges.
Original advisories
- CVE-2022-0972
- CVE-2022-0973
- CVE-2022-0971
- CVE-2022-0978
- CVE-2022-0974
- CVE-2022-0976
- CVE-2022-0977
- CVE-2022-0975
- CVE-2022-26899
- CVE-2022-0980
Related products
CVE list
- CVE-2022-0972 critical
- CVE-2022-0975 critical
- CVE-2022-0976 critical
- CVE-2022-0973 critical
- CVE-2022-0980 critical
- CVE-2022-0978 critical
- CVE-2022-0977 critical
- CVE-2022-0979 critical
- CVE-2022-0971 critical
- CVE-2022-0974 critical
- CVE-2022-26899 critical
KB list
Read more
Find out the statistics of the vulnerabilities spreading in your region on statistics.securelist.com
Found an inaccuracy in the description of this vulnerability? Let us know!