CVE-2012-2864

critical
Published 2012-08-22 · Modified 2026-04-29
CVSS v3
CVSS v2
10.0
VIR risk
10.0

Description

Mesa, as used in Google Chrome before 21.0.1183.0 on the Acer AC700, Cr-48, and Samsung Series 5 and 5 550 Chromebook platforms, and the Samsung Chromebox Series 3, allows remote attackers to execute arbitrary code via unspecified vectors that trigger an "array overflow."

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2012-2864

OS impact

OSVersionStatusFixed in
debian debianbookwormfixed8.0.4-2
debian debianbullseyefixed8.0.4-2
debian debianforkyfixed8.0.4-2
debian debiansidfixed8.0.4-2
debian debiantrixiefixed8.0.4-2

References

CWEs

CWE-119

Verify integrity in audit chain (admin only). AS-IS.