2011년 2월 3일 목요일

Opera 11 Integer Truncation Vulnerability (Fixed)

'Opera 11 Integer Truncation Vulnerability'은 2011.01.06일 'Bugs.opera.com'에 보고되었습니다.

Opera browser 11.01에서 위의 취약점은 해결되었습니다.

취약점을 발견한 Jordi.Chancel Research 블로그 (Opera 11 Integer Truncation Vulnerability ) - http://goo.gl/pPia6

Avulnerability has been identified in Opera, which could be exploited byremote attackers to take complete control of a vulnerable system. Thisissue is caused by an integer truncation error within the Opera InternetBrowser module "opera.dll" when handling a HTML "select" elementcontaining an overly large number of children, which could allow remoteattackers to execute arbitrary code by convincing a user to visit aspecially crafted web page. (블로그 내용 발취)

Crash corruption opera 11 POC 동영상 - http://www.youtube.com/watch?v=fvqRX9dVOr4

Opera Browser "select" Element Children Integer Truncation Vulnerability - http://www.vupen.com/english/advisories/2011/0189

댓글 없음:

댓글 쓰기