Description:
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge. A remote attacker could entice a user to open a web page with specially crafted content on a vulnerable browser to exploit the vulnerabilities.
Affected Systems:
- Microsoft Edge prior to version 109.0.1518.70
Impact:
Successful exploitation of the vulnerabilities could lead to remote code execution or information disclosure on an affected system.
Recommendation:
Users of affected systems should update Microsoft Edge to version 109.0.1518.70 or later to address the issue.
The details of security updates can be found at:
https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#january-26-2023
More Information:
- https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#january-26-2023
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-0471 (to CVE-2023-0474)