CVE-2012-2864

Description

Mesa, as used in Google Chrome before 21.0.1183.0 on the Acer AC700, Cr-48, and Samsung Series 5 and 5 550 Chromebook platforms, and the Samsung Chromebox Series 3, allows remote attackers to execute arbitrary code via unspecified vectors that trigger an array overflow.

Risk Information

Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
5.704

Associated Vulnerability

VulnerabilityOS Platform
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0Windows
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89Windows
Vulnerabilities CVE-2012-2864 are fixed in Chrome (x64) 21.0.1183.0Windows
Vulnerabilities CVE-2012-2864 are fixed in Chrome (x64) 21.0.1183.89Windows
free implementation of the EGL API (USN-1623-1) libosmesa6_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libosmesa6_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libegl1-mesa_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libegl1-mesa_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libglu1-mesa_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libglu1-mesa_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libglapi-mesa_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libglapi-mesa_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libgles1-mesa_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libgles1-mesa_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libgles2-mesa_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libgles2-mesa_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libxatracker1_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libxatracker1_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libgl1-mesa-dri_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libgl1-mesa-dri_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libgl1-mesa-glx_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libgl1-mesa-glx_8.0.4-0ubuntu0.6_amd64.debLinux
free implementation of the EGL API (USN-1623-1) libopenvg1-mesa_8.0.4-0ubuntu0.6_i386.debLinux
free implementation of the EGL API (USN-1623-1) libopenvg1-mesa_8.0.4-0ubuntu0.6_amd64.debLinux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Debian)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Debian)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Centos)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Centos)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For RedHat)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For RedHat)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Suse)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Suse)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Ubuntu)Linux
Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Ubuntu)Linux

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-313038Google Chrome (80.0.3987.122)
PATCH-313038Google Chrome (80.0.3987.122)
PATCH-313039Google Chrome (x64) (80.0.3987.122)
PATCH-313039Google Chrome (x64) (80.0.3987.122)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234