KLA12211
Multiple vulnerabilities in Microsoft Browser

Обновлено: 22/06/2021
Дата обнаружения
18/06/2021
Уровень угрозы
Warning
Описание

Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service.

Below is a complete list of vulnerabilities:

  1. A use after free vulnerability in WebAudio can be exploited to cause denial of service or execute arbitrary code.
  2. A use after free vulnerability in Sharing can be exploited to cause denial of service or execute arbitrary code.
  3. A use after free vulnerability in WebGL can be exploited to cause denial of service or execute arbitrary code.
  4. A use after free vulnerability in TabGroups can be exploited to cause denial of service or execute arbitrary code.
Пораженные продукты

Microsoft Edge (Chromium-based)

Решение

Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)

Первичный источник обнаружения
CVE-2021-30556
CVE-2021-30555
CVE-2021-30554
CVE-2021-30557
Оказываемое влияние
?
ACE 
[?]

DoS 
[?]
Связанные продукты
Microsoft Edge
CVE-IDS