CVE-2012-2881: Google Chrome

High severity, CVSS 7.5. EPSS: 1.3% chance of exploitation in the next 30 days.

Google Chrome before 22.0.1229.79 does not properly handle plug-ins, which allows remote attackers to cause a denial of service (DOM tree corruption) or possibly have unspecified other impact via unknown vectors.

Affected products

  • Google Chrome: up to and including 22.0.1229.78; version 22.0.1229.0 only; version 22.0.1229.1 only; version 22.0.1229.2 only; version 22.0.1229.3 only; version 22.0.1229.4 only; …
  • Opensuse Opensuse: version 12.1 only; version 12.2 only

Published 2012-09-26. Last modified 2026-06-16.