CVE-2012-5112: Apple iPhone OS

High severity, CVSS 10.0. EPSS: 4.6% chance of exploitation in the next 30 days.

Use-after-free vulnerability in the SVG implementation in WebKit, as used in Google Chrome before 22.0.1229.94, allows remote attackers to execute arbitrary code via unspecified vectors.

Affected products

  • Apple iPhone OS: version 6.0 only
  • Google Chrome: up to and including 22.0.1229.92; version 22.0.1229.0 only; version 22.0.1229.1 only; version 22.0.1229.2 only; version 22.0.1229.3 only; version 22.0.1229.4 only; …

Published 2012-10-11. Last modified 2026-06-16.