From c6066a2ee6a195a6edda6cac1832d948167b40d5 Mon Sep 17 00:00:00 2001 From: Martin Wilke Date: Fri, 19 Dec 2008 21:07:06 +0000 Subject: - Document opera -- multiple vulnerabilities --- security/vuxml/vuln.xml | 51 +++++++++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 51 insertions(+) (limited to 'security') diff --git a/security/vuxml/vuln.xml b/security/vuxml/vuln.xml index 6d847f3e05d9..031426922f8e 100644 --- a/security/vuxml/vuln.xml +++ b/security/vuxml/vuln.xml @@ -34,6 +34,57 @@ Note: Please add new entries to the beginning of this file. --> + + opera -- multiple vulnerabilities + + + opera + linux-opera + 9.63 + + + + +

The Opera Team reports:

+
+

Manipulating certain text-area contents can cause a buffer + overflow, which may be exploited to execute arbitrary code.

+

Certain HTML constructs can cause the resulting DOM to change + unexpectedly, which triggers a crash. To inject code, additional + techniques will have to be employed.

+

Exceptionally long host names in file: URLs can cause a buffer + overflow, which may be exploited to execute arbitrary code. Remote Web + pages cannot refer to file: URLs, so successful exploitation involves + tricking users into manually opening the exploit URL, or a local file + that refers to it.

+

When Opera is previewing a news feed, some scripted URLs are not + correctly blocked. These can execute scripts which are able to + subscribe the user to any feed URL that the attacker chooses, and can + also view the contents of any feeds that the user is subscribed to. + These may contain sensitive information.

+

Built-in XSLT templates incorrectly handle escaped content and can + cause it to be treated as markup. If a site accepts content from + untrusted users, which it then displays using XSLT as escaped strings, + this can allow scripted markup to be injected. The scripts will then + be executed in the security context of that site.

+
+ +
+ + CVE-2008-5178 + http://www.opera.com/support/kb/view/920/ + http://www.opera.com/support/kb/view/921/ + http://www.opera.com/support/kb/view/922/ + http://www.opera.com/support/kb/view/923/ + http://www.opera.com/support/kb/view/924/ + http://secunia.com/advisories/32752/ + + + 2008-11-18 + 2008-12-19 + +
+ mediawiki -- multiple vulnerabilities -- cgit v1.2.3