Follow @Openwall on Twitter for new release announcements and other news
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <Pine.GSO.4.51.0810221332220.25959@faron.mitre.org>
Date: Wed, 22 Oct 2008 13:33:03 -0400 (EDT)
From: "Steven M. Christey" <coley@...us.mitre.org>
To: oss-security@...ts.openwall.com
cc: coley@...re.org
Subject: Re: CVE Request: Opera 9.60 with security fixes


to be filled in later...

fixed in Opera 9.6:

 CVE-2008-4694 code execution using redirects to crafted addresses
 CVE-2008-4695  Java applets cache file read

fixed in 9.6.1:

 CVE-2008-4696 History Search infoleak by insufficient escaping
 CVE-2008-4697 Fast Forward XSS
 CVE-2008-4698 improper script blocking for unrelated news feeds


Arguably some of the 9.6.1 script issues could have been combined...

- Steve

Powered by blists - more mailing lists

Please check out the Open Source Software Security Wiki, which is counterpart to this mailing list.

Confused about mailing lists and their use? Read about mailing lists on Wikipedia and check out these guidelines on proper formatting of your messages.