CVE-2012-2673

medium
Published 2012-07-25 ยท Modified 2026-04-29
CVSS v3
โ€”
CVSS v4 NEW
โ€”
not yet in upstream
VIR risk
5.0

Description

Multiple integer overflows in the (1) GC_generic_malloc and (2) calloc functions in malloc.c, and the (3) GC_generic_malloc_ignore_off_page function in mallocx.c in Boehm-Demers-Weiser GC (libgc) before 7.2 make it easier for context-dependent attackers to perform memory-related attacks such as buffer overflows via a large size value, which causes less memory to be allocated than expected.

Predictions

Exploit likelihood
20%
Patch ETA
โ€”

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

No mitigations published for this CVE yet.

The vendor-content worker queues fetches as references arrive (check back in a few minutes). Or โ€” if you've already worked around this in production โ€” publish your fix to the community-verified tier.

โœš Propose a mitigation on Community โ†’ Mitigations published via the community go through AI scoring + 2 human reviewers + 7-day silent objection window before landing here with source_tier=community-verified.

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed1:7.1-9
debian debianbullseyefixed1:7.1-9
debian debianforkyfixed1:7.1-9
debian debiansidfixed1:7.1-9
debian debiantrixiefixed1:7.1-9

Application impact

VendorProductVersionsFixed
boehm-demers-weisergarbage_collector{"endIncluding":"7.2"}
boehm-demers-weisergarbage_collector1.3
boehm-demers-weisergarbage_collector1.4
boehm-demers-weisergarbage_collector1.5
boehm-demers-weisergarbage_collector1.8
boehm-demers-weisergarbage_collector1.9
boehm-demers-weisergarbage_collector2.0
boehm-demers-weisergarbage_collector2.1
boehm-demers-weisergarbage_collector2.2
boehm-demers-weisergarbage_collector2.3
boehm-demers-weisergarbage_collector2.4
boehm-demers-weisergarbage_collector3.0
boehm-demers-weisergarbage_collector3.1
boehm-demers-weisergarbage_collector3.2
boehm-demers-weisergarbage_collector3.3
boehm-demers-weisergarbage_collector3.4
boehm-demers-weisergarbage_collector3.5
boehm-demers-weisergarbage_collector3.6
boehm-demers-weisergarbage_collector3.7
boehm-demers-weisergarbage_collector4.0
boehm-demers-weisergarbage_collector4.1
boehm-demers-weisergarbage_collector4.2
boehm-demers-weisergarbage_collector4.3
boehm-demers-weisergarbage_collector4.4
boehm-demers-weisergarbage_collector4.5
boehm-demers-weisergarbage_collector4.6
boehm-demers-weisergarbage_collector4.7
boehm-demers-weisergarbage_collector4.8
boehm-demers-weisergarbage_collector4.9
boehm-demers-weisergarbage_collector4.10
boehm-demers-weisergarbage_collector4.11
boehm-demers-weisergarbage_collector4.12
boehm-demers-weisergarbage_collector4.13
boehm-demers-weisergarbage_collector4.14
boehm-demers-weisergarbage_collector5.0
boehm-demers-weisergarbage_collector5.1
boehm-demers-weisergarbage_collector5.2
boehm-demers-weisergarbage_collector5.3
boehm-demers-weisergarbage_collector5.4
boehm-demers-weisergarbage_collector6.0
boehm-demers-weisergarbage_collector6.1
boehm-demers-weisergarbage_collector6.2
boehm-demers-weisergarbage_collector6.3
boehm-demers-weisergarbage_collector6.4
boehm-demers-weisergarbage_collector6.5
boehm-demers-weisergarbage_collector6.6
boehm-demers-weisergarbage_collector6.7
boehm-demers-weisergarbage_collector6.8
boehm-demers-weisergarbage_collector6.9
boehm-demers-weisergarbage_collector7.0
boehm-demers-weisergarbage_collector7.1
boehm-demers-weisergarbage_collector7.2

References

CWEs

CWE-189

Community-verified mitigations for this CVE will appear above when contributors publish them.

Verify integrity in audit chain (admin only). AS-IS.