CVE-2019-0567
A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2019-0539, CVE-2019-0568.
- Affected products
- Edge
- Microsoft Chakracore
- All versions
- CVSS 2.0
- 7.6 HIGH
- CVSS 3.1
- 7.5 HIGH
- EPSS
- 75.6% (99th percentile)
- Weakness
- CWE-787
- NVD status
- Modified
- Published
- 2019-01-08
CVE-2019-0567 at NVD
7 known exploits for CVE-2019-0567
Proof-of-concept code and exploit modules indexed by Sploitus
TriBell_Edge_SandBox_Escape
CVE-2019-0567-MS-Edge
Chakra-CVE-2019-0567
chakra-exploit-framework
Microsoft Edge Chakra - NewScObjectNoCtor or InitProto Type Confusion Exploit
Microsoft Edge Chakra - 'NewScObjectNoCtor' or 'InitProto' Type Confusion
Microsoft Edge Chakra JIT NewScObjectNoCtor / InitProto Type Confusion