Microsoft Edge (Chromium-based) Information Disclosure Vulnerability
🔗 CVE IDs covered (1)
📋 Description
What is the version information for this release? Microsoft Edge Channel Microsoft Edge Version Based on Chromium Version Date Released Stable 118.0.2088.46 118.0.5993.70/.71 10/13/2023
What type of information could be disclosed by this vulnerability? The type of information that could be disclosed if an attacker successfully exploited this vulnerability is Enclave memory read - unprivileged write to enclave memory from a host application, which can leak memory contents of the enclave.
According to the CVSS metric, successful exploitation of this vulnerability could lead to some loss of integrity (I:L)? What does that mean for this vulnerability? The attacker who successfully exploits the vulnerability could lead to file overwrite, which has minimal impact.
🎯 Affected products1
- Microsoft Edge (Chromium-based)
✅ Remediation
KBRelease Notes (Security Update) — fixed build 118.0.2088.46