CVE-2012-2874
published 2012-09-26CVE-2012-2874: Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors…
PriorityP427high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.24%
66.2th percentile
Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2883.
Affected
55 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 22.0.1229.78 | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-53pv-hrm8-w4g5: Skia, as used in Google Chrome before 22
ghsa_unreviewed·2022-05-14·CVSS 7.5
CVE-2012-2883 [HIGH] CWE-119 GHSA-53pv-hrm8-w4g5: Skia, as used in Google Chrome before 22
Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2874.
GHSA
GHSA-vrvr-rv69-wvh3: Skia, as used in Google Chrome before 22
ghsa_unreviewed·2022-05-14·CVSS 7.5
CVE-2012-2874 [HIGH] CWE-119 GHSA-vrvr-rv69-wvh3: Skia, as used in Google Chrome before 22
Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2883.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://googlechromereleases.blogspot.com/2012/09/stable-channel-update_25.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-10/msg00012.htmlhttps://code.google.com/p/chromium/issues/detail?id=132398https://exchange.xforce.ibmcloud.com/vulnerabilities/78835https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15856http://googlechromereleases.blogspot.com/2012/09/stable-channel-update_25.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-10/msg00012.htmlhttps://code.google.com/p/chromium/issues/detail?id=132398https://exchange.xforce.ibmcloud.com/vulnerabilities/78835https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15856
2012-09-26
Published