cbcvebase.
CVE-2018-8145
published 2018-05-09

CVE-2018-8145: An information disclosure vulnerability exists when Chakra improperly discloses the contents of its memory, which could provide an attacker with information to…

PriorityP267high7.5CVSS 3.0
AVNACHPRNUIRSUCHIHAH
EXPLOIT
EPSS
66.88%
99.2th percentile
An information disclosure vulnerability exists when Chakra improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user's computer or data, aka "Chakra Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge, Internet Explorer 10. This CVE ID is unique from CVE-2018-0943, CVE-2018-8130, CVE-2018-8133, CVE-2018-8177.

Affected

8 ranges
VendorProductVersion rangeFixed in
microsoftchakracore<= 1.8.3
microsoftchakracore
microsoftinternet_explorer
microsoftinternet_explorer
msrcchakracore
msrcinternet_explorer_10
msrcinternet_explorer_11
msrcmicrosoft_edge

Detection & IOCsextracted from sources · hover to see the quote

  • CVE-2018-8145 is frequently chained with other Chakra vulnerabilities (CVE-2018-0943, CVE-2018-8130, CVE-2018-8133, CVE-2018-8177); detection of any one of these in combination with Edge/ChakraCore activity should raise suspicion of a multi-stage exploit chain
  • A public PoC exists for a related Chakra JIT out-of-bounds read/write (Exploit-DB 45011) using typed array manipulation in a tight loop; monitor for Edge/ChakraCore JIT compilation of large Uint32Array loop constructs with repeated index manipulation as a behavioral indicator
  • ·Exploitation requires the attacker to know the memory address of where the object was created, meaning CVE-2018-8145 is most dangerous as an info-leak primitive used to bypass ASLR before a follow-on RCE exploit
  • ·Microsoft assessed exploitation as 'Unlikely' for the latest software release at time of disclosure; no in-the-wild exploitation was confirmed at time of advisory
  • ·The PoC on Exploit-DB (45011) is noted as similar to issue 1429 (MSRC 42111) and may require multiple page refreshes to trigger a crash, indicating reliability may be low without further weaponization

CVSS provenance

nvdv3.07.5HIGHCVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.07.6HIGHAV:N/AC:H/Au:N/C:C/I:C/A:C
ghsa7.5HIGH
osv7.5HIGH
vulncheck7.5HIGH
vendor_msrc4.3MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.