RULE(RULE ID:321899)

Rule General Information
Release Date: 2019-06-21
Rule Name: Microsoft Edge Chakra Engine JIT Compiler Incorrect Instruction GenerateBailOut Vulnerability (CVE-2017-11799)
Severity:
CVE ID:
Rule Protection Details
Description: hakraCore and Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to execute arbitrary code in the context of the current user, due to how the scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability".
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, FreeBSD, Solaris, Other Unix, Network Device, Mac OS, iOS, Android, Others
Reference: SecurityFocusBID:101126
ExploitDB:42998
SecurityTrackerID:1039529
Solutions
The vendors have released upgrade patches to fix vulnerabilities, please visit:
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11799