Microsoft Edge browser (123.0.6312.122/.123) version security update advisory

Overview

 

Microsoft(https://www.microsoft.com) has released a security update that fixes vulnerabilities in products it has supplied. users of affected products are advised to update to the latest version.

 

Affected Products

 

Microsoft Edge 123.0.6312.122/.123 (Chromium-based) or below

 

Resolved Vulnerabilities

 

Heap buffer overflow vulnerability in the ANGLE function in Microsoft Edge 123.0.6312.122/.123 (Chromium-based) (CVE-2024-3516)

Out-of-bounds write vulnerability in the Compositing feature in Microsoft Edge 123.0.6312.122/.123 (Chromium-based) (CVE-2024-3157)

Memory reuse after freeing in the Dawn feature in Microsoft Edge 123.0.6312.122/.123 (Chromium-based) (CVE-2024-3515)

 

Vulnerability Patches

 

The following product-specific vulnerability patches were made available in the April 13, 2024 Update Please use the Windows Update feature for automatic installation or refer to the URLs in the product information below to download and install.

Microsoft Edge (Chromium-based) version

https://msrc.microsoft.com/update-guide/