Opera Mobile for Android Insecure File Permissions Cache Poisoning Vulnerability
BID:49702
Info
Opera Mobile for Android Insecure File Permissions Cache Poisoning Vulnerability
| Bugtraq ID: | 49702 |
| Class: | Design Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 20 2011 12:00AM |
| Updated: | Sep 20 2011 12:00AM |
| Credit: | Roee Hay of IBM Rational Application Security Research Group. |
| Vulnerable: |
Opera Opera Mobile for Android 11.1 update 1 Opera Opera Mobile for Android 11.1 |
| Not Vulnerable: |
Opera Opera Mobile for Android 11.1 update 2 |
Discussion
Opera Mobile for Android Insecure File Permissions Cache Poisoning Vulnerability
Opera Mobile for Android is prone to a remote cache-poisoning vulnerability because of insecure file permissions issue.
An attacker can exploit this issue to obtain sensitive information or corrupt web cache files. This allows attacker to conduct cross site scripting attacks by injecting arbitrary JavaScript code into the context of an arbitrary domain.
Versions prior to Opera Mobile 11.1 update 2 are vulnerable.
Opera Mobile for Android is prone to a remote cache-poisoning vulnerability because of insecure file permissions issue.
An attacker can exploit this issue to obtain sensitive information or corrupt web cache files. This allows attacker to conduct cross site scripting attacks by injecting arbitrary JavaScript code into the context of an arbitrary domain.
Versions prior to Opera Mobile 11.1 update 2 are vulnerable.
Exploit / POC
Opera Mobile for Android Insecure File Permissions Cache Poisoning Vulnerability
Attackers can exploit these issues by enticing an unsuspecting victim into installing a malicious application on an Android-based device.
Please see the references for a proof of concept code and a video demonstrating the attack.
Attackers can exploit these issues by enticing an unsuspecting victim into installing a malicious application on an Android-based device.
Please see the references for a proof of concept code and a video demonstrating the attack.
Solution / Fix
Opera Mobile for Android Insecure File Permissions Cache Poisoning Vulnerability
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Opera Mobile for Android Insecure File Permissions Cache Poisoning Vulnerability
References:
References:
- Android 11.1 update 2 ready for download (Opera)
- Opera Mobile (Opera)
- Opera Mobile Cache Poisoning XAS (Roee Hay)
- Opera Mobile Cache Poisoning XAS (Roee Hay)