LWN.net Logo

opera: multiple vulnerabilities

Package(s):opera CVE #(s):
Created:November 14, 2012 Updated:November 21, 2012
Description: From the openSUSE advisory:

Opera 12.10 fixes the following security issues:

  • -an issue that could cause Opera not to correctly check for certificate revocation;
  • -an issue where CORS requests could incorrectly retrieve contents of cross origin pages;
  • -an issue where data URIs could be used to facilitate Cross-Site Scripting;
  • -a high severity issue, as reported by Gareth Heyes; details will be disclosed at a later date
  • -an issue where specially crafted SVG images could allow execution of arbitrary code;
  • -a moderate severity issue, as reported by the Google Security Group; details will be disclosed at a later date
Alerts:
openSUSE openSUSE-SU-2012:1481-1 2012-11-14

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds