CVE-2012-2849

Off-by-one error in the GIF decoder in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted image.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
ChromeCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 79%
VendorProductVersion
googlechrome
𝑥
≤ 21.0.1180.56
googlechrome
21.0.1180.0
googlechrome
21.0.1180.1
googlechrome
21.0.1180.2
googlechrome
21.0.1180.31
googlechrome
21.0.1180.32
googlechrome
21.0.1180.33
googlechrome
21.0.1180.34
googlechrome
21.0.1180.35
googlechrome
21.0.1180.36
googlechrome
21.0.1180.37
googlechrome
21.0.1180.38
googlechrome
21.0.1180.39
googlechrome
21.0.1180.41
googlechrome
21.0.1180.46
googlechrome
21.0.1180.47
googlechrome
21.0.1180.48
googlechrome
21.0.1180.49
googlechrome
21.0.1180.50
googlechrome
21.0.1180.51
googlechrome
21.0.1180.52
googlechrome
21.0.1180.53
googlechrome
21.0.1180.54
googlechrome
21.0.1180.55
googlechrome
𝑥
≤ 21.0.1180.59
googlechrome
21.0.1180.0
googlechrome
21.0.1180.1
googlechrome
21.0.1180.2
googlechrome
21.0.1180.31
googlechrome
21.0.1180.32
googlechrome
21.0.1180.33
googlechrome
21.0.1180.34
googlechrome
21.0.1180.35
googlechrome
21.0.1180.36
googlechrome
21.0.1180.37
googlechrome
21.0.1180.38
googlechrome
21.0.1180.39
googlechrome
21.0.1180.41
googlechrome
21.0.1180.46
googlechrome
21.0.1180.47
googlechrome
21.0.1180.48
googlechrome
21.0.1180.49
googlechrome
21.0.1180.50
googlechrome
21.0.1180.51
googlechrome
21.0.1180.52
googlechrome
21.0.1180.53
googlechrome
21.0.1180.54
googlechrome
21.0.1180.55
googlechrome
21.0.1180.56
googlechrome
21.0.1180.57
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
chromium-browser
quantal
Fixed 3.0.1271.97-0ubuntu0.12.10.1
released
precise
Fixed 3.0.1271.97-0ubuntu0.12.04.1
released
oneiric
Fixed 3.0.1271.97-0ubuntu0.11.10.1
released
natty
ignored
lucid
Fixed 3.0.1271.97-0ubuntu0.10.04.1
released
hardy
dne
Common Weakness Enumeration