Описание
Multiple serious vulnerabilities have been found in Microsoft Edge. Malicious users can exploit these vulnerabilities to spoof user interface, execute arbitrary code or bypass security features.
Below is a complete list of vulnerabilities
- An improper HTTP responses parsing can be exploited remotely via a specially designed web site to spoof user interface;
- An improper exceptions handling can be exploited remotely via a specially designed web site to bypass Address Space Layout Randomization;
- An improper memory objects access can be exploited remotely via a specially designed web site to execute arbitrary code.
Первичный источник обнаружения
Связанные продукты
Список CVE
- CVE-2016-0060 critical
- CVE-2016-0061 critical
- CVE-2016-0062 critical
- CVE-2016-0084 critical
- CVE-2016-0080 warning
- CVE-2016-0077 warning
Список KB
Смотрите также
Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com
Нашли неточность в описании этой уязвимости? Дайте нам знать!