|
Message-Id: <200804110311.32750.rbu@gentoo.org>
Date: Fri, 11 Apr 2008 03:11:32 +0200
From: Robert Buchholz <rbu@...too.org>
To: oss-security@...ts.openwall.com
Subject: CVE request: Opera <9.27 Multiple issues
These are more than a week old, but I haven't see CVEs popping up yet.
So here's a formal request ;-)
To quote the ChangeLog:
--------------
* Fixed an issue where newsfeed prompts could cause Opera to execute
arbitrary code, as reported by Michal Zalewski. See our advisory.
* Solved an issue where resized canvas patterns could cause Opera to
execute arbitrary code, as reported by Michal Zalewski. See our
advisory.
* Improved keyboard handling of password inputs, as reported by
Trystan S.
--------------
I have no idea what the third vulnerability actually means.
References:
http://www.opera.com/docs/changelogs/windows/927/
http://www.opera.com/support/search/view/881/ (1)
http://www.opera.com/support/search/view/882/ (2)
http://secunia.com/advisories/29662/
Download attachment "signature.asc " of type "application/pgp-signature" (190 bytes)
Powered by blists - more mailing lists
Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.
Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.