Opera Multiple Vulnerabilities

ERCOLINO

Membro dello Staff
Amministratore
Registrato
3 Marzo 2003
Messaggi
252.900
Località
Torino
Secunia Advisory: SA29662
Release Date: 2008-04-03

Critical: Highly critical
Impact: System access
Where: From remote
Solution Status: Vendor Patch

Software:
Opera 5.x
Opera 6.x
Opera 7.x
Opera 8.x
Opera 9.x




Description:
Some vulnerabilities have been reported in Opera, which potentially can be exploited by malicious people to compromise a user's system.

1) An error when prompting the user to add a newsfeed can be exploited to cause an invalid memory access via a specially crafted newsfeed source.

2) An error exists in the processing of HTML CANVAS elements. This can be exploited to cause a memory corruption via specially crafted scaled pattern images.

Successful exploitation of the vulnerabilities may allow execution of arbitrary code.

The vulnerabilities are reported in versions prior to 9.27.



Solution:
Update to version 9.27



Bollettino di Sicurezza
 
Indietro
Alto Basso