FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2007-0126

This CVE name corresponds to:

Entered Topic
2007-01-05 opera -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2007-0126
Phase Assigned(20070108)

Description

Heap-based buffer overflow in Opera 9.02 allows remote attackers to execute arbitrary code via a JPEG file with an invalid number of index bytes in the Define Huffman Table (DHT) marker.

References

Source Reference
IDEFENSE 20070105 Opera Software Opera Web Browser JPG Image DHT Marker Heap Corruption Vulnerability
CONFIRM http://www.opera.com/support/search/supsearch.dml?index=852
GENTOO GLSA-200701-08
SUSE SUSE-SA:2007:009
VUPEN ADV-2007-0060
OSVDB 31574
SECTRACK 1017473
SECUNIA 23613
SECUNIA 23739
SECUNIA 23771
XF opera-jpeg-dht-bo(31305)