Vulnerability Database
Blog
FAQ
Docs
CVE-2020-17054
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2020-17054
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2020-17054.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2020-17054
Aliases
GHSA-88cw-3m6x-49f7
Withdrawn
2024-05-08T06:50:43.188006Z
Published
2020-11-11T07:15:16Z
Modified
2024-01-02T05:26:08.005477Z
Severity
4.2 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
CVSS Calculator
Summary
[none]
Details
Chakra Scripting Engine Memory Corruption Vulnerability
References
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2020-17054
Affected packages
Git
/
github.com/chakra-core/chakracore
Affected ranges
Type
GIT
Repo
https://github.com/chakra-core/chakracore
Events
Introduced
0f40413d2e29863edf5f82de14fac41843deb79f
Fixed
008e43ecbab30135a31e9a849e9d6903c5a6040c
Type
GIT
Repo
https://github.com/microsoft/chakracore
Events
Introduced
0f40413d2e29863edf5f82de14fac41843deb79f
Fixed
008e43ecbab30135a31e9a849e9d6903c5a6040c
Affected versions
v1.*
v1.11.0
v1.11.1
v1.11.10
v1.11.11
v1.11.12
v1.11.13
v1.11.14
v1.11.15
v1.11.16
v1.11.17
v1.11.18
v1.11.19
v1.11.2
v1.11.20
v1.11.21
v1.11.22
v1.11.3
v1.11.4
v1.11.5
v1.11.6
v1.11.7
v1.11.8
v1.11.9
CVE-2020-17054 - OSV