On Metacritic: BioShock 2: Inside the reviews
BNET Business Network:
BNET
TechRepublic
ZDNet

November 23rd, 2009

Opera patches 'extremely severe' security hole

Posted by Ryan Naraine @ 12:24 pm

Categories: Arbitrary Code Execution, Browsers, Data theft, Denial of Service (DoS), Hackers, Malware, Passwords, Patch Watch, Responsible disclosure

Tags: Opera Software ASA, Patch Management, Error Message, Patches, Security, Ryan Naraine

Opera has shipped a new version of its browser to fix three security vulnerabilities, one rated “extremely severe.”

The most serious flaw could allow a malicious attacker to take complete control of a system, Opera said in an advisory.

The skinny:

Passing very long strings through the string to number conversion using JavaScript in Opera may result in heap buffer overflows. This also affects the dtoa routine, and was reported in CVE-2009-0689. In most cases Opera will just freeze or terminate, but in some cases this could lead to a crash which could be used to execute code. To inject code, additional techniques will have to be employed.

A second flaw, rated “highly severe,” could allow error messages to leak onto unrelated sites

Scripting error messages are normally available only to the page that caused the error. In some cases, the error messages could be passed to other sites as the contents of unrelated variables, and may contain sensitive information. If those sites write the content into the page markup, this could allow cross-site scripting, using code provided by the attacking site. This issue only affects installations that have enabled stacktraces for exceptions, these are disabled by default.

Opera also patched a third “moderately severe” flaw but details on this issue were not released.

Opera users should immediately upgrade to version 10.10 which includes the patches for these issues.

Ryan NaraineRyan Naraine is a journalist and security evangelist at Kaspersky Lab. He manages Threatpost.com, a security news portal. Here is Ryan's full profile and disclosure of his industry affiliations.


Email Ryan Naraine

For daily updates on Ryan's activities, follow him on Twitter.

Subscribe to Zero Day via Email alerts or RSS.

  • Talkback
  • Most Recent of 36 Talkback(s)
Huh?
All browsers have had some error or another during
their lifetime. Opera might not have nearly as
many as Microsoft's browser, but that doesn't make
it perfect.... (Read the rest)
Posted by: AzuMao Posted on: 12/05/09 You are currently: a Guest | | Terms of Use
Let me know when it gets really reheheally 'extremely severe'.  D-T-Schmitz | 11/23/09
Don't worry.  AzuMao | 11/24/09
RE: Opera patches 'extremely severe' security hole  Agnostic_OS | 11/23/09
Critical and important  honeymonster | 11/23/09
Ad; Secunias rating.  hkommedal | 11/24/09
Glad you are not programming  wellduh | 12/05/09
I agree with the body of your post..  AzuMao | 12/05/09
RE: Opera patches 'extremely severe' security hole  andy.smith@... | 11/24/09
RE: What about Opera 'Unite'  SonicLogic | 11/24/09
security issues with Opera aren't common  james.faction | 11/24/09
True.. Security issues with Opera are rare  SonicLogic | 11/24/09
Opera 'Unite'  Agnostic_OS | 11/24/09
Fewer users by the day?  sazmazm | 12/01/09
Indeed, where did Opera 'Unite' come from?  sazmazm | 12/01/09
RE: Opera patches 'extremely severe' security hole  hkommedal | 11/24/09
Unpatched History - Good for Opera, Not for IE  stds | 11/30/09
Opera IS the most secure browser  james.faction | 11/24/09
Lynx is more secure.  AzuMao | 11/24/09
Lynx?  james.faction | 12/01/09
It is smaller and more secure.  AzuMao | 12/01/09
Lies! False report!  wellduh | 12/05/09
Huh?  AzuMao | 12/05/09
Paranoia the destroya  Turd Furgeson | 11/25/09
Use your brain when interpreting bug rate  wellduh | 12/05/09
RE: Opera patches 'extremely severe' security hole  bikey@... | 11/24/09
oooooooh yeah!  jsargent | 11/24/09
Chrome  james.faction | 12/01/09
RE: Opera patches 'extremely severe' security hole  vaby42 | 11/25/09
Probably because it's not a browser.  AzuMao | 11/30/09
RE: Opera patches 'extremely severe' security hole  Starman35 | 11/30/09
RE:Does this affect Opera Mini as well?  SnaffleBitAcres | 11/30/09
RE: Opera patches 'extremely severe' security hole  PatrynXX | 11/30/09
RE: Opera patches 'extremely severe' security hole  johncookson@... | 11/30/09
RE: Opera patches 'extremely severe' security hole  jimmanis | 11/30/09
RE: Opera patches 'extremely severe' security hole  eagerbeaver | 11/30/09
RE: Opera patches 'extremely severe' security hole  james.faction | 12/01/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement

Recent Entries

advertisement

Archives

Favorite Links

ZDNet Blogs

White Papers, Webcasts, and Downloads

SmartPlanet

Click Here