Skip to main content

Opera Multiple Vulnerabilities

Last Update Date: 28 Jan 2011 Release Date: 13 Aug 2010 4453 Views

RISK: Medium Risk

Multiple vulnerabilities have been identified in Opera, which could be exploited by attackers to bypass security restrictions or compromise a vulnerable system.

1. A heap overflow error when performing some painting operations on a HTML5 canvas while certain transformations are being applied, which could be exploited by attackers to execute arbitrary code by tricking a user into visiting a specially crafted web page.

2. An error when displaying the download dialog, which could allow attackers to trick a user into running downloaded executables.

3. An error when previewing a news feed, which could allow malicious web sites to silently subscribe a user to a feed.


Impact

  • Remote Code Execution
  • Security Restriction Bypass

System / Technologies affected

  • Opera versions prior to 10.61

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

Upgrade to Opera version 10.61 :
http://www.opera.com/browser/


Vulnerability Identifier

  • No CVE information is available

Source


Related Link