CVE-2012-5109
published 2012-10-09CVE-2012-5109: The International Components for Unicode (ICU) functionality in Google Chrome before 22.0.1229.92 allows remote attackers to cause a denial of service…
PriorityP418medium5CVSS 2.0
AVNACLAuNCNINAP
EPSS
1.22%
65.8th percentile
The International Components for Unicode (ICU) functionality in Google Chrome before 22.0.1229.92 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to a regular expression.
Affected
56 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| chrome | <= 22.0.1229.91 | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — | |
| chrome | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
icu: DoS (out-of bounds read) via vectors related to regular expression
vendor_redhat·2012-10-08·CVSS 5.0
CVE-2012-5109 [MEDIUM] CWE-125 icu: DoS (out-of bounds read) via vectors related to regular expression
icu: DoS (out-of bounds read) via vectors related to regular expression
The International Components for Unicode (ICU) functionality in Google Chrome before 22.0.1229.92 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to a regular expression.
Statement: Red Hat Product Security has rated this issue as having Low security impact. This issue is not currently planned to be addressed in future updates. For additional information, refer to the Issue Severity Classification: https://access.redhat.com/security/updates/classification/.
Package: icu (Red Hat Directory Server 8) - Not affected
Package: icu (Red Hat Enterprise Linux 5) - Will not fix
Package: icu (Red Hat Enterprise Linux 6) - Will not fix
GHSA
GHSA-2fq9-4v6m-8wcj: The International Components for Unicode (ICU) functionality in Google Chrome before 22
ghsa_unreviewed·2022-05-17
CVE-2012-5109 [MEDIUM] CWE-125 GHSA-2fq9-4v6m-8wcj: The International Components for Unicode (ICU) functionality in Google Chrome before 22
The International Components for Unicode (ICU) functionality in Google Chrome before 22.0.1229.92 allows remote attackers to cause a denial of service (out-of-bounds read) via vectors related to a regular expression.
No detection rules found.
No public exploits indexed.
http://googlechromereleases.blogspot.com/2012/10/stable-channel-update.htmlhttps://code.google.com/p/chromium/issues/detail?id=148692https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15774http://googlechromereleases.blogspot.com/2012/10/stable-channel-update.htmlhttps://code.google.com/p/chromium/issues/detail?id=148692https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15774
2012-10-09
Published