Opera Web Browser Dangling Pointer Remote Code Execution Vulnerability
BID:24970
Info
Opera Web Browser Dangling Pointer Remote Code Execution Vulnerability
| Bugtraq ID: | 24970 |
| Class: | Design Error |
| CVE: |
CVE-2007-3929 |
| Remote: | Yes |
| Local: | No |
| Published: | Jul 19 2007 12:00AM |
| Updated: | Mar 19 2015 08:13AM |
| Credit: | enhalos is credited with the discovery of this vulnerability. |
| Vulnerable: |
SuSE SUSE Linux Enterprise Server 9 SP3 SuSE SUSE Linux Enterprise Server 8 SuSE SUSE Linux Enterprise Server 10 SP1 SuSE SUSE Linux Enterprise Server 10 SuSE SUSE Linux Enterprise SDK 9 SuSE SUSE Linux Enterprise SDK 10.SP1 SuSE SUSE Linux Enterprise SDK 10 SuSE Suse Linux Enterprise Desktop 10 SP1 SuSE Suse Linux Enterprise Desktop 10 SuSE Linux Openexchange Server SuSE Linux Desktop 1.0 SuSE Linux Desktop 10 SuSE Linux 10.1 x86-64 SuSE Linux 10.1 x86 SuSE Linux 10.1 ppc SuSE Linux 10.0 x86-64 SuSE Linux 10.0 x86 SuSE Linux 10.0 ppc S.u.S.E. UnitedLinux 1.0 S.u.S.E. SuSE Linux School Server for i386 S.u.S.E. SUSE LINUX Retail Solution 8.0 S.u.S.E. SuSE Linux Openexchange Server 4.0 S.u.S.E. openSUSE 10.2 S.u.S.E. Open-Enterprise-Server 0 S.u.S.E. Office Server S.u.S.E. Novell Linux POS 9 S.u.S.E. Novell Linux Desktop 9.0 S.u.S.E. Linux Professional 10.0 OSS S.u.S.E. Linux Professional 10.0 S.u.S.E. Linux Professional 10.2 X86 64 S.u.S.E. Linux Professional 10.2 S.u.S.E. Linux Professional 10.1 S.u.S.E. Linux Personal 10.0 OSS S.u.S.E. Linux Personal 10.2 X86 64 S.u.S.E. Linux Personal 10.2 S.u.S.E. Linux Personal 10.1 Opera Software Opera Web Browser 9.21 Gentoo Linux |
| Not Vulnerable: |
Opera Software Opera Web Browser 9.22 |
Discussion
Opera Web Browser Dangling Pointer Remote Code Execution Vulnerability
The Opera Web Browser is prone to a remote code-execution vulnerability that occurs when parsing a specially crafted BitTorrent header.
Exploiting this issue allows an attacker to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will result in a denial-of-service condition.
This issue affects Opera 9.21; prior versions may also be affected.
NOTE: This issue is reported to affect only Opera running on Microsoft Windows; other platforms running Opera may also be affected.
The Opera Web Browser is prone to a remote code-execution vulnerability that occurs when parsing a specially crafted BitTorrent header.
Exploiting this issue allows an attacker to execute arbitrary code with the privileges of the user running the affected application. Failed exploit attempts will result in a denial-of-service condition.
This issue affects Opera 9.21; prior versions may also be affected.
NOTE: This issue is reported to affect only Opera running on Microsoft Windows; other platforms running Opera may also be affected.
Exploit / POC
Opera Web Browser Dangling Pointer Remote Code Execution Vulnerability
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Currently we are not aware of any exploits for this issue. If you feel we are in error or if you are aware of more recent information, please mail us at: [email protected].
Solution / Fix
Opera Web Browser Dangling Pointer Remote Code Execution Vulnerability
Solution:
Opera Software has released version 9.22 to address this issue. Please see the references for more information.
Solution:
Opera Software has released version 9.22 to address this issue. Please see the references for more information.
References
Opera Web Browser Dangling Pointer Remote Code Execution Vulnerability
References:
References:
- Opera Download Page (Opera)
- Opera Homepage (Opera Software)
- iDefense Security Advisory 07.19.07: Opera Software Opera Web BrowserBitTorrent ([email protected])
- A malicious torrent can cause Opera to execute arbitrary code (Opera )
- Opera Software Opera Web Browser BitTorrent Dangling Pointer Vulnerability (iDefense Labs)