Threat Level: green Handler on Duty: Didier Stevens

SANS ISC: Unpatched Microsoft Edge and IE Bug SANS ISC InfoSec Forums

Watch ISC TV. Great for NOCs, SOCs and Living Rooms: https://isctv.sans.edu

Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Unpatched Microsoft Edge and IE Bug

Microsoft Edge and Internet Explorer can be exploited by a type confusion in HandleColumnBreakOnColumnSpanningElement. A POC was released here.

[1] https://bugs.chromium.org/p/project-zero/issues/detail?id=1011#c2

-----------
Guy Bruneau IPSS Inc.
Twitter: GuyBruneau
gbruneau at isc dot sans dot edu

Guy

472 Posts
ISC Handler
Feb 25th 2017

Sign Up for Free or Log In to start participating in the conversation!