CVE-2012-5120

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Google V8 before 3.13.7.5, as used in Google Chrome before 23.0.1271.64, on 64-bit Linux platforms allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code that triggers an out-of-bounds access to an array.

References

http://googlechromereleases.blogspot.com/2012/11/stable-channel-release-and-beta-channel.html

http://osvdb.org/87085

http://www.securityfocus.com/bid/56413

https://code.google.com/p/chromium/issues/detail?id=150729

https://exchange.xforce.ibmcloud.com/vulnerabilities/79867

Details

Source: MITRE

Published: 2012-11-07

Updated: 2017-08-29

Type: CWE-119

Risk Information

CVSS v2

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH

Vulnerable Software

Configuration 1

AND

OR

cpe:2.3:a:google:chrome:23.0.1271.0:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.1:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.2:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.3:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.4:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.5:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.6:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.7:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.8:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.9:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.10:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.11:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.12:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.13:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.14:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.15:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.16:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.17:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.18:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.19:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.20:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.21:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.22:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.23:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.24:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.26:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.30:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.31:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.32:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.33:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.35:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.36:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.37:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.38:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.39:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.40:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.41:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.44:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.45:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.46:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.49:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.50:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.51:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.52:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.53:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.54:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.55:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.56:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.57:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.58:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.59:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.60:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:23.0.1271.61:*:*:*:*:*:*:*

cpe:2.3:a:google:chrome:*:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:1.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.4.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:2.5.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.11:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.0.12:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.1.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.2.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.3.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.11:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.12:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.13:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.4.14:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.5.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.6.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.11:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.7.12:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.8.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.11:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.12:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.13:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.14:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.15:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.16:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.17:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.18:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.19:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.20:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.21:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.22:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.23:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.9.24:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.10.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.11.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.7:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.8:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.9:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.10:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.11:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.12:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.13:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.14:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.15:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.16:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.17:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.18:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.12.19:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.0:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.1:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.2:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.3:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.4:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.5:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:3.13.6:*:*:*:*:*:*:*

cpe:2.3:a:google:v8:*:*:*:*:*:*:*:*

OR

cpe:2.3:o:linux:linux_kernel:-:-:*:*:*:*:x64:*

Tenable Plugins

View all (5 total)

IDNameProductFamilySeverity
70112GLSA-201309-16 : Chromium, V8: Multiple vulnerabilitiesNessusGentoo Local Security Checks
critical
63490Fedora 18 : v8-3.13.7.5-1.fc18 (2012-20117)NessusFedora Local Security Checks
high
63458Fedora 16 : v8-3.13.7.5-1.fc16 (2012-20159)NessusFedora Local Security Checks
high
63361Fedora 17 : v8-3.13.7.5-1.fc17 (2012-20103)NessusFedora Local Security Checks
high
62856FreeBSD : chromium -- multiple vulnerabilities (209c068d-28be-11e2-9160-00262d5ed8ee)NessusFreeBSD Local Security Checks
high