Medium severity4.3NVD Advisory· Published Aug 8, 2017· Updated Jun 17, 2026
CVE-2017-8659
CVE-2017-8659
Description
Microsoft Edge in Microsoft Windows 10 1703 allows an attacker to obtain information to further compromise the user's system due to the Chakra scripting engine not properly handling objects in memory, aka "Scripting Engine Information Disclosure Vulnerability".
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected packages
Versions sourced from the GitHub Security Advisory.
| Package | Affected versions | Patched versions |
|---|---|---|
Microsoft.ChakraCoreNuGet | < 1.6.1 | 1.6.1 |
Affected products
3- Microsoft Corporation/Microsoft Scripting Enginev5Range: Microsoft Windows 10 1703.
Patches
Vulnerability mechanics
References
9- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8659nvdPatchVendor AdvisoryWEB
- www.securityfocus.com/bid/100029nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039095nvdThird Party AdvisoryVDB Entry
- github.com/advisories/GHSA-h6m7-jphx-f9p5ghsaADVISORY
- nvd.nist.gov/vuln/detail/CVE-2017-8659ghsaADVISORY
- github.com/chakra-core/ChakraCore/commit/2500e1cdc12cb35af73d5c8c9b85656aba6bab4dghsaWEB
- github.com/chakra-core/ChakraCore/pull/3509ghsaWEB
- web.archive.org/web/20210612224703/http://www.securityfocus.com/bid/100029ghsaWEB
- web.archive.org/web/20211127144809/http://www.securitytracker.com/id/1039095ghsaWEB
News mentions
0No linked articles in our index yet.