Vulnerability Assessment & Network Security Forums



If through a vulnerability assessment, a network security issue is detected for the vulnerability below, applying the appropriate security patches in a timely matter is very important.  If you have detected that your system has already been compromised, following CERT's Network Security recovery document will assist with recommended steps for system recovery.


Home >> Browse Vulnerability Assessment Database >> Windows >> Opera < 9.10 Multiple Vulnerabilities


Vulnerability Assessment Details

Opera < 9.10 Multiple Vulnerabilities

Vulnerability Assessment Summary
Checks version number of Opera

Detailed Explanation for this Vulnerability Assessment

Summary :

The remote host contains a web browser which is susceptible to
multiple issues.

Description :

The version of Opera installed on the remote host reportedly contains
a heap overflow vulnerability that can be triggered when processing
the DHT marker in a specially-crafted JPEG image to crash the browser
or possibly permit execution of arbitrary code on the affected host.

In addition, another flaw in Opera's createSVGTransformFromMatrix
object typecasting may lead to a browser crash or arbitrary code
execution if support for Javascript is enabled.

See also :

http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=458
http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=457
http://www.securityfocus.com/archive/1/456053
http://www.securityfocus.com/archive/1/456066
http://www.opera.com/support/search/supsearch.dml?index=851
http://www.opera.com/support/search/supsearch.dml?index=852

Solution :

Upgrade to Opera version 9.10 or later.

Network Security Threat Level:

High / CVSS Base Score : 8.0
(AV:R/AC:H/Au:NR/C:C/I:C/A:C/B:N)

Networks Security ID: 21882

Vulnerability Assessment Copyright: This script is Copyright (C) 2007 Tenable Network Security

Cables, Connectors

Vintage Apple Macintosh M7803 Pro Keyboard - 108 keys - Black/Clear
$10.0
Vintage Apple Macintosh M7803 Pro Keyboard - 108 keys - Black/Clear pictureVintage Apple Macintosh 590-0307-A SCSI Centronics Cable
$12.0
Vintage Apple Macintosh 590-0307-A SCSI Centronics Cable pictureVintage 1988 Apple Mac Macintosh SE COMPUTER M5011 TESTED WORKING
$95.0
Vintage 1988 Apple Mac Macintosh SE COMPUTER M5011 TESTED WORKING pictureVintage Apple Computer Power Mac G4 Pro Create Poster MINT -
$36.0
Vintage Apple Computer Power Mac G4 Pro Create Poster MINT -  picture


Discussions

No Discussions have been posted on this vulnerability.