5

CVE-2012-2854

Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows remote attackers to obtain potentially sensitive information about pointer values by leveraging access to a WebUI renderer process.

Data is provided by the National Vulnerability Database (NVD)
GoogleChrome Version <= 21.0.1180.56
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.0
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.1
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.2
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.31
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.32
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.33
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.34
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.35
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.36
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.37
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.38
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.39
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.41
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.46
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.47
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.48
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.49
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.50
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.51
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.52
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.53
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.54
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version21.0.1180.55
   ApplemacOS X
   LinuxLinux Kernel
GoogleChrome Version <= 21.0.1180.59
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.0
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.1
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.2
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.31
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.32
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.33
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.34
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.35
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.36
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.37
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.38
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.39
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.41
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.46
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.47
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.48
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.49
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.50
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.51
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.52
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.53
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.54
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.55
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.56
   GoogleFrame Version-
   MicrosoftWindows
GoogleChrome Version21.0.1180.57
   GoogleFrame Version-
   MicrosoftWindows
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.23% 0.428
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.