|
|
| |
|
| |
opera: multiple vulnerabilities
| Package(s): | opera |
CVE #(s): | CVE-2010-2576
CVE-2010-3019
CVE-2010-3020
CVE-2010-3021
|
| Created: | August 26, 2010 |
Updated: | September 1, 2010 |
| Description: |
From the SUSE advisory:
- CVE-2010-2576: CVSS v2 Base Score: 6.8 (CWE-94):
unexpected changes in tab focus could be used to run programs from
the Internet, as reported by Jakob Balle and Sven Krewitt of Secunia
- CVE-2010-3019: CVSS v2 Base Score: 9.3 (CWE-119):
heap buffer overflow in HTML5 canvas could be used to execute
arbitrary code, as reported by Kuzzcc
- CVE-2010-3020: CVSS v2 Base Score: 5.0 (CWE-264):
news feed preview could subscribe to feeds without interaction, as
reported by Alexios Fakos
- CVE-2010-3021: CVSS v2 Base Score: 4.3 (CWE-399):
remote attackers could trigger a remote denial of service (CPU
consumption and application hang) via an animated PNG image
|
| Alerts: |
|
( Log in to post comments)
|
|
|