Trend Micro Security

Microsoft Edge Scripting Engine Memory Corruption Vulnerability (CVE-2016-3199)

  危険度: : 緊急

  概要

A vulnerability was discovered in the underlying JavaScript engine for Microsoft Edge that could allow attackers to achieve remote code execution conditions. The underlying issue involves a class object confusion vulnerability that could lead to an out of bound memory write. A successful exploitation of the issue could allow an attacker to execute arbitrary code on the remote system.

  トレンドマイクロの対策

Apply associated Trend Micro DPI Rules.

  対応方法

  Trend Micro Deep Security DPI Rule Number: 1007661