CVE-2012-5127: Google Chrome

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

Integer overflow in Google Chrome before 23.0.1271.64 allows remote attackers to cause a denial of service (out-of-bounds read) or possibly have unspecified other impact via a crafted WebP image.

Affected products

  • Google Chrome: up to and including 23.0.1271.62; version 23.0.1271.0 only; version 23.0.1271.1 only; version 23.0.1271.2 only; version 23.0.1271.3 only; version 23.0.1271.4 only; …

Published 2012-11-07. Last modified 2026-06-16.