CVE-2012-1521: Apple iPhone OS

Medium severity, CVSS 6.8. EPSS: 2.2% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the XML parser in Google Chrome before 18.0.1025.168 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

Affected products

  • Apple iPhone OS: before 6.0 (fixed in 6.0)
  • Apple iTunes: before 10.7 (fixed in 10.7)
  • Apple Safari: before 6.0 (fixed in 6.0)
  • Google Chrome: before 18.0.1025.168 (fixed in 18.0.1025.168)

Published 2012-05-01. Last modified 2026-06-16.