KLA11222
Multiple vulnerabilities in Microsoft Edge and Internet Explorer
Обновлено: 26/06/2019
Дата обнаружения
10/04/2018
Уровень угрозы
High
Описание

Multiple serious vulnerabilities have been found in Microsoft Edge and Internet Explorer. Malicious users can exploit these vulnerabilities to obtain sensitive information and execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. Multiple memory corruption vulnerabilities can be exploited remotely via specially crafted website to obtain sensitive information;
  2. Multiple memory corruption vulnerabilities in Chakra scripting engine can be exploited remotely via specially crafted website to execute arbitrary code;
  3. Multiple memory corruption vulnerabilities can be exploited remotely via specially crafted website to execute arbitrary code;
Пораженные продукты

Microsoft Edge
Microsoft Internet Explorer 9
Microsoft Internet Explorer 10
Microsoft Internet Explorer 11

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2018-1004
CVE-2018-0981
CVE-2018-0994
CVE-2018-0997
CVE-2018-0990
CVE-2018-1023
CVE-2018-1000
CVE-2018-0892
CVE-2018-1001
CVE-2018-1019
CVE-2018-1018
CVE-2018-0998
CVE-2018-1020
CVE-2018-0988
CVE-2018-0979
CVE-2018-0980
CVE-2018-0987
CVE-2018-0995
CVE-2018-0989
CVE-2018-0870
CVE-2018-0991
CVE-2018-0993
CVE-2018-0996
Оказываемое влияние
?
ACE 
[?]

OSI 
[?]

DoS 
[?]

SB 
[?]

PE 
[?]
Связанные продукты
Microsoft Internet Explorer
Microsoft Edge
CVE-IDS
CVE-2018-10049.3Critical
CVE-2018-09812.6Warning
CVE-2018-09947.6Critical
CVE-2018-09977.6Critical
CVE-2018-09907.6Critical
CVE-2018-10237.6Critical
CVE-2018-10002.6Warning
CVE-2018-08924.3Warning
CVE-2018-10017.6Critical
CVE-2018-10197.6Critical
CVE-2018-10187.6Critical
CVE-2018-09984.3Warning
CVE-2018-10207.6Critical
CVE-2018-09887.6Critical
CVE-2018-09797.6Critical
CVE-2018-09807.6Critical
CVE-2018-09874.3Warning
CVE-2018-09957.6Critical
CVE-2018-09894.3Warning
CVE-2018-08707.6Critical
CVE-2018-09917.6Critical
CVE-2018-09937.6Critical
CVE-2018-09967.6Critical
Microsoft official advisories
Microsoft Security Update Guide
KB list

4093112
4093114
4093111
4093107
4093109
4093119
4093118
4093123
4092946