Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2016-3199)
Publish Date: 16 juin 2016
Gravité: : Critique
Date du conseil: 16 juin 2016
Description
A vulnerability was discovered in the underlying JavaScript engine for Microsoft Edge that could allow attackers to achieve remote code execution conditions. The underlying issue involves a class object confusion vulnerability that could lead to an out of bound memory write. A successful exploitation of the issue could allow an attacker to execute arbitrary code on the remote system.
Information Exposure Rating:
Apply associated Trend Micro DPI Rules.
Solutions
Trend Micro Deep Security DPI Rule Number: 1007661