High severity7.5NVD Advisory· Published May 12, 2017· Updated May 13, 2026
CVE-2017-0228
CVE-2017-0228
Description
A remote code execution vulnerability exists in Microsoft browsers in the way JavaScript engines render when handling objects in memory, aka "Scripting Engine Memory Corruption Vulnerability." This CVE ID is unique from CVE-2017-0224, CVE-2017-0229, CVE-2017-0230, CVE-2017-0234, CVE-2017-0235, CVE-2017-0236, and CVE-2017-0238.
Affected products
3- cpe:2.3:a:microsoft:internet_explorer:11:*:*:*:*:*:*:*
- Microsoft Corporation/Microsoft browsersv5Range: Windows 8.1 for 32-bit systems, Windows 8.1 for x64-based systems, Windows RT 8.1, Windows Server 2012 R2, Windows 10 for 32-bit Systems, Windows 10 for x64-based Systems, Windows 10 Version 1511 for 32-bit Systems, Windows 10 Version 1511 for x64-based Systems, Windows 10 Version 1607 for 32-bit Systems, Windows 10 Version 1607 for x64-based Systems, Windows 10 Version 1703 for 32-bit Systems, Windows 10 Version 1703 for x64-based Systems, and Windows Server 2016.
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
4- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0228nvdPatchVendor Advisory
- www.securityfocus.com/bid/98164nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1038425nvd
- www.securitytracker.com/id/1038426nvd
News mentions
0No linked articles in our index yet.