FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2008-5178

This CVE name corresponds to:

Entered Topic
2008-12-19 opera -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2008-5178
Phase Assigned(20081120)

Description

Heap-based buffer overflow in Opera 9.62 on Windows allows remote attackers to execute arbitrary code via a long file:// URI. NOTE: this might overlap CVE-2008-5680.

References

Source Reference
BUGTRAQ 20081117 Opera 9.6x file:// overflow
MILW0RM 7135
CONFIRM http://www.opera.com/support/kb/view/922/
GENTOO GLSA-200903-30
BID 32323
SECUNIA 34294
VUPEN ADV-2008-3183
OSVDB 49882
SECUNIA 32752
XF opera-filehandler-bo(46653)