CVE-2012-5129: Google Chrome

High severity, CVSS 7.5. EPSS: 1.1% chance of exploitation in the next 30 days.

Heap-based buffer overflow in the WebGL subsystem in Google Chrome OS before 23.0.1271.94 allows remote attackers to cause a denial of service (GPU process crash) or possibly have unspecified other impact via unknown vectors.

Affected products

  • Google Chrome: version 23.0.1271.91 only; version 23.0.1271.92 only
  • Google Chrome OS: up to and including 21.0.1180.57

Published 2012-12-04. Last modified 2026-06-16.