Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [thread-next>] [day] [month] [year] [list]
Message-Id: <200804110311.32750.rbu@gentoo.org>
Date: Fri, 11 Apr 2008 03:11:32 +0200
From: Robert Buchholz <rbu@...too.org>
To: oss-security@...ts.openwall.com
Subject: CVE request: Opera <9.27 Multiple issues

These are more than a week old, but I haven't see CVEs popping up yet. 
So here's a formal request ;-)

To quote the ChangeLog:
                 --------------
    * Fixed an issue where newsfeed prompts could cause Opera to execute 
arbitrary code, as reported by Michal Zalewski. See our advisory.
    * Solved an issue where resized canvas patterns could cause Opera to 
execute arbitrary code, as reported by Michal Zalewski. See our 
advisory.
    * Improved keyboard handling of password inputs, as reported by 
Trystan S. 
                --------------

I have no idea what the third vulnerability actually means.

References:
http://www.opera.com/docs/changelogs/windows/927/
http://www.opera.com/support/search/view/881/     (1)
http://www.opera.com/support/search/view/882/     (2)
http://secunia.com/advisories/29662/

Download attachment "signature.asc " of type "application/pgp-signature" (190 bytes)

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.