An information disclosure vulnerability exists when Chakra improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user’s computer or data.To exploit the vulnerability, an attacker must know the memory address of where the object was created.The update addresses the vulnerability by changing the way certain functions handle objects in memory., aka 'Scripting Engine Information Disclosure Vulnerability'.
                
            References
                    | Link | Resource | 
|---|---|
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0813 | Patch Vendor Advisory | 
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0813 | Patch Vendor Advisory | 
Configurations
                    Configuration 1 (hide)
| 
 | 
Configuration 2 (hide)
| AND | 
 
 | 
History
                    21 Nov 2024, 04:54
| Type | Values Removed | Values Added | 
|---|---|---|
| References | () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-0813 - Patch, Vendor Advisory | 
Information
                Published : 2020-03-12 16:15
Updated : 2024-11-21 04:54
NVD link : CVE-2020-0813
Mitre link : CVE-2020-0813
CVE.ORG link : CVE-2020-0813
JSON object : View
Products Affected
                microsoft
- windows_server_2019
- chakracore
- windows_10
- edge
CWE
                