Secunia Advisory SA39590Opera Asynchronous Content Modification Uninitialised Memory Vulnerability
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
Description
A vulnerability has been discovered in Opera, which can be exploited by malicious people to compromise a user's system. The vulnerability is caused due to an error when continuously modifying document content on a web page e.g. using document.write(). This may result in a function call using uninitialised memory when a user visits a specially crafted web page. Successful exploitation may allow execution of arbitrary code. The vulnerability is confirmed in version 10.52 for Windows. Other versions may also be affected. Solution Provided and/or discovered by Alternate/detailed remediation Deep Links Do you have additional information related to this advisory?Please provide information about patches, mitigating factors, new versions, exploits, faulty patches, links, and other relevant data by posting comments to this Advisory. You can also send this information to vuln@secunia.com
|
||||||||||||||||||||||||||||||||||||||||||||||||||||||||||
12 views | ![]() |
Fedora update for libmikmod![]() | |
23 views | ![]() |
Fedora update for kernel![]() | |
24 views | ![]() |
Fedora update for libgdiplus![]() | |
24 views | ![]() |
Fedora update for slim![]() | |
25 views | ![]() |
Debian update for xulrunner![]() | |