News Security Technology

CERT-IN Issues Warning Against Microsoft Edge

According to the agency, these vulnerabilities stem from issues such as object corruption in V8 and WebAssembly, Use after free V8, Downloads and QUIC, and out of bounds read in fonts

The Indian government has Issued warning regarding a significant security concern linked to the Microsoft Edge web browser. In a recent security bulletin from the Indian Computer Emergency Response Team (CERT-In), the warning has been given a high rating.

CERT-In asserts that the Microsoft Edge browser harbors multiple security vulnerabilities, potentially enabling attackers to trigger denial of service conditions, execute remote code, and bypass device security, thus gaining access to sensitive data.

According to the agency, these vulnerabilities stem from issues such as object corruption in V8 and WebAssembly, Use after free V8, Downloads and QUIC, and out of bounds read in fonts. The agency cautions that a remote attacker could exploit these weaknesses by sending a carefully crafted request to the targeted system.

The security concern affects Edge browser stable versions preceding 124.0.2478.51. However, users with versions beyond this are shielded by the latest Microsoft patch.

As a precautionary measure against such security threats, adhering to standard safety practices is advised. This includes refraining from opening emails from unfamiliar senders, downloading attachments from unknown sources, and clicking on links contained in emails from unidentified individuals.

Fortunately, Microsoft has promptly addressed the issue by issuing a security bulletin. Users are urged to update their Edge browser on all devices immediately. This can be done by navigating to Microsoft Edge, selecting Help And Feedback, and then clicking on About Microsoft Edge to automatically check for and install the latest version.

Leave a Reply

Your email address will not be published. Required fields are marked *