First published: Wed Jun 27 2012(Updated: )
Untrusted search path vulnerability in Google Chrome before 20.0.1132.43 on Windows might allow local users to gain privileges via a Trojan horse Metro DLL in the current working directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Chrome | <=20.0.1132.42 | |
Google Chrome | =20.0.1132.0 | |
Google Chrome | =20.0.1132.1 | |
Google Chrome | =20.0.1132.2 | |
Google Chrome | =20.0.1132.3 | |
Google Chrome | =20.0.1132.4 | |
Google Chrome | =20.0.1132.5 | |
Google Chrome | =20.0.1132.6 | |
Google Chrome | =20.0.1132.7 | |
Google Chrome | =20.0.1132.8 | |
Google Chrome | =20.0.1132.9 | |
Google Chrome | =20.0.1132.10 | |
Google Chrome | =20.0.1132.11 | |
Google Chrome | =20.0.1132.12 | |
Google Chrome | =20.0.1132.13 | |
Google Chrome | =20.0.1132.14 | |
Google Chrome | =20.0.1132.15 | |
Google Chrome | =20.0.1132.16 | |
Google Chrome | =20.0.1132.17 | |
Google Chrome | =20.0.1132.18 | |
Google Chrome | =20.0.1132.19 | |
Google Chrome | =20.0.1132.20 | |
Google Chrome | =20.0.1132.21 | |
Google Chrome | =20.0.1132.22 | |
Google Chrome | =20.0.1132.23 | |
Google Chrome | =20.0.1132.24 | |
Google Chrome | =20.0.1132.25 | |
Google Chrome | =20.0.1132.26 | |
Google Chrome | =20.0.1132.27 | |
Google Chrome | =20.0.1132.28 | |
Google Chrome | =20.0.1132.29 | |
Google Chrome | =20.0.1132.30 | |
Google Chrome | =20.0.1132.31 | |
Google Chrome | =20.0.1132.32 | |
Google Chrome | =20.0.1132.33 | |
Google Chrome | =20.0.1132.34 | |
Google Chrome | =20.0.1132.35 | |
Google Chrome | =20.0.1132.36 | |
Google Chrome | =20.0.1132.37 | |
Google Chrome | =20.0.1132.38 | |
Google Chrome | =20.0.1132.39 | |
Google Chrome | =20.0.1132.40 | |
Google Chrome | =20.0.1132.41 | |
Microsoft Windows |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2764 is classified as a medium severity vulnerability due to potential privilege escalation risks.
To resolve CVE-2012-2764, update Google Chrome to version 20.0.1132.43 or later.
CVE-2012-2764 affects all versions of Google Chrome prior to 20.0.1132.43.
CVE-2012-2764 is an untrusted search path vulnerability that may allow local users to execute privileged actions.
Local users on Windows systems running affected versions of Google Chrome may be impacted by CVE-2012-2764.