CVE-2021-42279

Chakra Scripting Engine Memory Corruption Vulnerability
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
microsoftCNA
4.2 MEDIUM
NETWORK
HIGH
NONE
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:L/I:L/A:N
Base Score
CVSS 3.x
EPSS Score
Percentile: 86%
Affected Products (NVD)
VendorProductVersion
microsoftwindows_10
-
microsoftwindows_11
-
microsoftwindows_11
-
microsoftwindows_server_2016
-
microsoftwindows_server_2019
-
microsoftwindows_server_2022
-
𝑥
= Vulnerable software versions
Early Detection
Affected products identified ahead of NVD analysis through intelligence sources.
VendorProductVersionSource
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.19043.1348
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.22000.318
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.20348.350
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.19042.1348
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.18363.1916
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.19041.1348
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.10240.19119
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.14393.4770
CNA
microsoftchakracore
10.0.0 ≤
𝑥
< 10.0.17763.2300
CNA
Windows Releases
Platform
Version
Windows 10
(x64, x86)
1607 (x64, x86)
1809 (arm64, x64, x86)
1909 (arm64, x64, x86)
2004 (arm64, x64, x86)
20H2 (arm64, x86)
21H1 (arm64, x64, x86)
Windows 11
21H2 (arm64, x64)
Windows Server
2004 Server Core
20H2 Server Core
Windows Server 2016
Standard
Windows Server 2019
Standard
Windows Server 2022
Standard