Think you have a false positive on this rule?

Sid 1-47114

Message

BROWSER-IE Microsoft Edge heap overflow attempt

Summary

This event is generated when an attempted heap overflow in Microsoft Edge is detected.

Impact

Potential for remote code execution

CVE-2018-8262:

CVSS base score 7.5

CVSS impact score 5.9

CVSS exploitability score 1.6

Confidentiality Impact HIGH

Integrity Impact HIGH

Availability Impact HIGH

Detailed information

Heap overflow CVE-2018-8262: A remote code execution vulnerability exists when Microsoft Edge improperly accesses objects in memory, aka "Microsoft Edge Memory Corruption Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8125, CVE-2018-8274, CVE-2018-8275, CVE-2018-8279, CVE-2018-8301.

Affected systems

  • microsoft edge -

Ease of attack

Hard

False positives

False negatives

Corrective action

Contributors

  • Cisco's Talos Intelligence Group

Additional References

  • portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2018-8262