CVE-2012-2866: Google Chrome

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

Google Chrome before 21.0.1180.89 does not properly perform a cast of an unspecified variable during handling of run-in elements, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.

Affected products

  • Google Chrome: up to and including 21.0.1180.88; version 21.0.1180.0 only; version 21.0.1180.1 only; version 21.0.1180.2 only; version 21.0.1180.31 only; version 21.0.1180.32 only; …
  • Opensuse Opensuse: version 12.1 only; version 12.2 only

Published 2012-08-31. Last modified 2026-06-16.