CVE-2012-2874

UnknownEPSS 1.24%

Last modified

CVE-2012-2874 is a vulnerability of currently unknown severity. Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2883.. EPSS estimates a 1.24% chance of exploitation in the next 30 days.

Description

Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2883.

Metrics

EPSS Probability
1.24%

65.3th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
GoogleChrome<= 22.0.1229.78
GoogleChrome22.0.1229.0
GoogleChrome22.0.1229.1
GoogleChrome22.0.1229.2
GoogleChrome22.0.1229.3
GoogleChrome22.0.1229.4
GoogleChrome22.0.1229.6
GoogleChrome22.0.1229.7
GoogleChrome22.0.1229.8
GoogleChrome22.0.1229.9
GoogleChrome22.0.1229.10
GoogleChrome22.0.1229.11
GoogleChrome22.0.1229.12
GoogleChrome22.0.1229.14
GoogleChrome22.0.1229.16
GoogleChrome22.0.1229.17
GoogleChrome22.0.1229.18
GoogleChrome22.0.1229.20
GoogleChrome22.0.1229.21
GoogleChrome22.0.1229.22
GoogleChrome22.0.1229.23
GoogleChrome22.0.1229.24
GoogleChrome22.0.1229.25
GoogleChrome22.0.1229.26
GoogleChrome22.0.1229.27
GoogleChrome22.0.1229.28
GoogleChrome22.0.1229.29
GoogleChrome22.0.1229.31
GoogleChrome22.0.1229.32
GoogleChrome22.0.1229.33
GoogleChrome22.0.1229.35
GoogleChrome22.0.1229.36
GoogleChrome22.0.1229.37
GoogleChrome22.0.1229.39
GoogleChrome22.0.1229.48
GoogleChrome22.0.1229.49
GoogleChrome22.0.1229.50
GoogleChrome22.0.1229.51
GoogleChrome22.0.1229.52
GoogleChrome22.0.1229.53
GoogleChrome22.0.1229.54
GoogleChrome22.0.1229.55
GoogleChrome22.0.1229.56
GoogleChrome22.0.1229.57
GoogleChrome22.0.1229.58
GoogleChrome22.0.1229.59
GoogleChrome22.0.1229.60
GoogleChrome22.0.1229.62
GoogleChrome22.0.1229.63
GoogleChrome22.0.1229.64

Showing 50 of 55 affected configurations. See NVD for the full list.

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2012-2874?
Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2883.
How severe is CVE-2012-2874?
Severity scoring for CVE-2012-2874 is pending analysis. The EPSS model estimates a 1.24% probability of exploitation in the next 30 days.
How do I fix CVE-2012-2874?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2012-2874?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST