CVE-2012-2864
Description
Mesa, as used in Google Chrome before 21.0.1183.0 on the Acer AC700, Cr-48, and Samsung Series 5 and 5 550 Chromebook platforms, and the Samsung Chromebox Series 3, allows remote attackers to execute arbitrary code via unspecified vectors that trigger an array overflow.
Risk Information
Base Score
9.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
5.704
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 | Windows |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 | Windows |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome (x64) 21.0.1183.0 | Windows |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome (x64) 21.0.1183.89 | Windows |
| free implementation of the EGL API (USN-1623-1) libosmesa6_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libosmesa6_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libegl1-mesa_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libegl1-mesa_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libglu1-mesa_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libglu1-mesa_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libglapi-mesa_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libglapi-mesa_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgles1-mesa_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgles1-mesa_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgles2-mesa_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgles2-mesa_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libxatracker1_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libxatracker1_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgl1-mesa-dri_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgl1-mesa-dri_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgl1-mesa-glx_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libgl1-mesa-glx_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libopenvg1-mesa_8.0.4-0ubuntu0.6_i386.deb | Linux |
| free implementation of the EGL API (USN-1623-1) libopenvg1-mesa_8.0.4-0ubuntu0.6_amd64.deb | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Debian) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Debian) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Centos) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Centos) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For RedHat) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For RedHat) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Suse) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Suse) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.0 (For Ubuntu) | Linux |
| Vulnerabilities CVE-2012-2864 are fixed in Chrome 21.0.1183.89 (For Ubuntu) | Linux |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-313038 | Google Chrome (80.0.3987.122) |
| PATCH-313038 | Google Chrome (80.0.3987.122) |
| PATCH-313039 | Google Chrome (x64) (80.0.3987.122) |
| PATCH-313039 | Google Chrome (x64) (80.0.3987.122) |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234