CVE-2012-5129
published 2012-12-04CVE-2012-5129: Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process…
PriorityP430high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
1.12%
62.4th percentile
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mesa | < mesa 8.0.5-3 (bookworm) | mesa 8.0.5-3 (bookworm) |
| chrome | — | — | |
| chrome | — | — | |
| chrome_os | <= 21.0.1180.57 | — | |
| mesa3d | mesa | >= 0 < 8.0.5-3 | 8.0.5-3 |
| mesa3d | mesa | >= 0 < 8.0.5-3 | 8.0.5-3 |
| mesa3d | mesa | >= 0 < 8.0.5-3 | 8.0.5-3 |
| mesa3d | mesa | >= 0 < 8.0.5-3 | 8.0.5-3 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_debian7.5HIGH
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-j4r3-4332-hqrv: Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23
ghsa_unreviewed·2022-05-14
CVE-2012-5129 [HIGH] CWE-119 GHSA-j4r3-4332-hqrv: Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
OSV
CVE-2012-5129: Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23
osv·2012-12-04·CVSS 7.5
CVE-2012-5129 [HIGH] CVE-2012-5129: Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
Ubuntu
Mesa vulnerability
vendor_ubuntu·2013-05-07
CVE-2012-5129 Mesa vulnerability
Title: Mesa vulnerability
Summary: Mesa could be made to crash or run programs if it processed specially
crafted data.
It was discovered that Mesa incorrectly handled certain arrays. An attacker
could use this issue to cause Mesa to crash, resulting in a denial of
service, or possibly execute arbitrary code.
Instructions: After a standard system update you need to reboot your computer to make
all the necessary changes.
Red Hat
Mesa: Heap-buffer overflow in glGetUniform*
vendor_redhat·2012-11-30·CVSS 7.5
CVE-2012-5129 [HIGH] CWE-122 Mesa: Heap-buffer overflow in glGetUniform*
Mesa: Heap-buffer overflow in glGetUniform*
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
Statement: Not Vulnerable. This issue does not affect the version of mesa as shipped with Red Hat Enterprise Linux 5 and 6.
Package: mesa (Red Hat Enterprise Linux 5) - Not affected
Package: mesa (Red Hat Enterprise Linux 6) - Not affected
Debian
CVE-2012-5129: mesa - Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23....
vendor_debian·2012·CVSS 7.5
CVE-2012-5129 [HIGH] CVE-2012-5129: mesa - Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23....
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
Scope: local
bookworm: resolved (fixed in 8.0.5-3)
bullseye: resolved (fixed in 8.0.5-3)
forky: resolved (fixed in 8.0.5-3)
sid: resolved (fixed in 8.0.5-3)
trixie: resolved (fixed in 8.0.5-3)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-5129 Mesa: Heap-buffer overflow in glGetUniform* [fedora-17]
bugzilla·2012-12-04·CVSS 7.5
CVE-2012-5129 [HIGH] CVE-2012-5129 Mesa: Heap-buffer overflow in glGetUniform* [fedora-17]
CVE-2012-5129 Mesa: Heap-buffer overflow in glGetUniform* [fedora-17]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of Fedora.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please use the bodhi submission link
noted in the next comment(s). This will include the bug IDs of this
tracking bug as well as the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
Bodhi notes field when available.
fedora-17 tracking bug for mesa: se
Bugzilla
CVE-2012-5129 Mesa: Heap-buffer overflow in glGetUniform*
bugzilla·2012-12-04·CVSS 7.5
CVE-2012-5129 [HIGH] CVE-2012-5129 Mesa: Heap-buffer overflow in glGetUniform*
CVE-2012-5129 Mesa: Heap-buffer overflow in glGetUniform*
Common Vulnerabilities and Exposures assigned an identifier CVE-2012-5129 to the following vulnerability:
Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.
Proposed patch:
http://www.mail-archive.com/[email protected]/msg29015.html
External References:
http://googlechromereleases.blogspot.com/2012/11/stable-update-for-chrome-os_30.html
https://code.google.com/p/chromium/issues/detail?id=145525
Discussion:
Created mesa tracking bugs for this issue
Affects: fedora-17 [bug 883246]
---
Statement:
Not Vulnerable. This issue does not affect t
Bugzilla
Mesa heap buffer overflow, exposed by WebGL, mirroring Chrome issue 145525
bugzilla·2012-10-26
[MEDIUM] Mesa heap buffer overflow, exposed by WebGL, mirroring Chrome issue 145525
Mesa heap buffer overflow, exposed by WebGL, mirroring Chrome issue 145525
Created attachment 675567
Testcase
This is http://code.google.com/p/chromium/issues/detail?id=145525 originally reported by miaubiz.
VULNERABILITY DETAILS
heap buffer overflow in gpu process with webgl
VERSION
Chrome Version: dev
Operating System: 64bit linux
REPRODUCTION CASE
attribute vec4 vPosition;
void main()
{
gl_Position = vPosition;
}
precision mediump float;
uniform float color[3];
void main()
{
gl_FragColor = vec4(color[0], 0, 0, 0);
}
function shader(gl, program, shaderType, shaderId) {
var shaderSource = document.getElementById(shaderId).text
var shader = gl.createShader(shaderType);
gl.shaderSource(shader, shaderSource);
gl.compileShader(shader);
gl.attachShader(program, shader)
}
functio
http://googlechromereleases.blogspot.com/2012/11/stable-update-for-chrome-os_30.htmlhttp://www.ubuntu.com/usn/USN-1818-1https://code.google.com/p/chromium/issues/detail?id=145525http://googlechromereleases.blogspot.com/2012/11/stable-update-for-chrome-os_30.htmlhttp://www.ubuntu.com/usn/USN-1818-1https://code.google.com/p/chromium/issues/detail?id=145525
2012-12-04
Published