List Info

Thread: PCWorks: Opera JPEG Processing Integer Overflow Vulnerability




PCWorks: Opera JPEG Processing Integer Overflow Vulnerability
user name
2006-06-23 09:17:09
TITLE:
Opera JPEG Processing Integer Overflow Vulnerability

SECUNIA ADVISORY ID:
SA20787

VERIFY ADVISORY:
http://secunia.c
om/advisories/20787/

CRITICAL:
Highly critical

IMPACT:
System access

WHERE:
From remote

SOFTWARE:
Opera 8.x
http://secunia.com/p
roduct/4932/

DESCRIPTION:
A vulnerability in Opera browser, which can be exploited by 
malicious people to compromise a user's system.

The vulnerability is caused due to an integer overflow when 
processing JPEG images. This can be exploited to cause a
buffer 
overflow via a specially crafted JPEG image.

Successful exploitation allows execution of arbitrary code.

The vulnerability has been reported in version 8.54. Prior 
versions may also be affected.

SOLUTION:
Upgrade to version 9.0.

ORIGINAL ADVISORY:
VigilantMinds:
ht
tp://www.vigilantminds.com/advi_detail.php?id=45
============= PCWorks Mailing List =================
Don't see your post? Check our posting guidelines &
make sure you've followed proper posting procedures,
http://pcworkers.com/r
ules.htm
Contact list owner <owner-pcworksimagicomm.com>
Unsubscribing and other changes: http://pcworkers.com
=====================================================
[1]

about | contact  Other archives ( Real Estate discussion Medical topics )