Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2023-48631

Опубликовано: 11 янв. 2024
Источник: msrc
EPSS Низкий

Описание

Adobe Systems Incorporated: CVE-2023-Improper Input Validation Denial of Service Vulnerability

FAQ

What is the version information for this release?

Microsoft Edge ChannelMicrosoft Edge VersionBased on Chromium VersionDate Released
Stable120.0.2336.0120.0.6099.216/2171/11/2024

Why is this Adobe CVE included in the Security Update Guide?

The vulnerability assigned to this CVE is in Adobe Software which is consumed by Microsoft Edge (Chromium-based). It is being documented in the Security Update Guide to announce that the latest version of Microsoft Edge (Chromium-based) is no longer vulnerable.

How can I see the version of the browser?

  1. In your Microsoft Edge browser, click on the 3 dots (...) on the very right-hand side of the window
  2. Click on Help and Feedback
  3. Click on About Microsoft Edge

Возможность эксплуатации

Publicly Disclosed

No

Exploited

No

Latest Software Release

Exploitation Less Likely

Older Software Release

Exploitation Less Likely

DOS

N/A

EPSS

Процентиль: 64%
0.00468
Низкий

Связанные уязвимости

CVSS3: 7.5
redhat
около 2 лет назад

@adobe/css-tools versions 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.

CVSS3: 5.3
nvd
около 2 лет назад

@adobe/css-tools versions 4.3.1 and earlier are affected by an Improper Input Validation vulnerability that could result in a denial of service while attempting to parse CSS.

CVSS3: 5
github
около 2 лет назад

@adobe/css-tools Improper Input Validation and Inefficient Regular Expression Complexity

CVSS3: 7.5
fstec
около 2 лет назад

Уязвимость CSS-парсера для Node.js css-tools, связанная с недостаточной проверкой входных данных, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 64%
0.00468
Низкий