CVE-2023-37142
CVSS 3.1 Score 5.5 of 10 (medium)
Details
Published Jul 18, 2023
Updated: Jul 27, 2023
CWE ID 400
Summary
CVE-2023-37142 is a newly disclosed vulnerability affecting ChakraCore's branch master cbb9b. This issue is characterized by a segmentation violation in the Js::EntryPointInfo::HasInlinees() function. Attackers can potentially exploit this vulnerability to execute arbitrary code or cause a denial-of-service condition. The precise implications and exploitability of this flaw are currently under investigation. Users are strongly advised to update their ChakraCore installations as soon as a patch becomes available.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Share