Information disclosure vulnerability in Opera via a crafted image as the fill pattern for a canvas (dpkg)ID: oval:org.secpod.oval:def:8310 | Date: (C)2013-01-07 (M)2022-10-10 |
Class: VULNERABILITY | Family: unix |
The host is installed with Opera before 12.10 and is prone to information disclosure vulnerability. A flaw is present in the application, which fails to properly handle incorrect size data in a WebP image. Successful exploitation could allow a remote attacker to obtain potentially sensitive information from process memory by using a crafted image as the fill pattern for a canvas.