[Forgot Password]
Login  Register Subscribe

23631

 
 

126998

 
 

102010

 
 

909

 
 

80911

 
 

121

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML view JSON

CVE-2008-5680Date: (C)2008-12-19   (M)2018-02-19


Multiple buffer overflows in Opera before 9.63 might allow (1) remote attackers to execute arbitrary code via a crafted text area, or allow (2) user-assisted remote attackers to execute arbitrary code via a long host name in a file: URL. NOTE: this might overlap CVE-2008-5178.

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score  : CVSS Score  : 9.3
Exploit Score: Exploit Score: 8.6
Impact Score : Impact Score : 10.0
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: Access Vector: NETWORK
Attack Complexity: Access Complexity: MEDIUM
Privileges Required: Authentication: NONE
User Interaction: Confidentiality: COMPLETE
Scope: Integrity: COMPLETE
Confidentiality: Availability: COMPLETE
Integrity:  
Availability:  
  





Reference:
SECTRACK-1021456
SECTRACK-1021457
http://www.securityfocus.com/archive/1/archive/1/498452/100/0/threaded
http://www.securityfocus.com/archive/1/archive/1/498481/100/0/threaded
http://www.securityfocus.com/archive/1/498499/100/0/threaded
http://www.securityfocus.com/archive/1/archive/1/498517/100/0/threaded
http://www.securityfocus.com/archive/1/archive/1/498543/100/0/threaded
SECUNIA-34294
GLSA-200903-30
http://www.opera.com/docs/changelogs/linux/963/
http://www.opera.com/support/kb/view/920/
http://www.opera.com/support/kb/view/922/

CPE    114
cpe:/a:opera:opera_browser:4.00
cpe:/a:opera:opera_browser:4.02
cpe:/a:opera:opera_browser:4.01
cpe:/a:opera:opera_browser:9.12
...
CWE    1
CWE-119
OVAL    1
oval:org.secpod.oval:def:35851

© 2013 SecPod Technologies