PT-2012-3007 · Opera · Opera
Publicado
2012-02-07
·
Atualizado
2017-08-29
·
CVE-2012-1003
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Opera versions 11.60 and earlier
Description
The issue is related to multiple integer overflows that can cause a denial of service, specifically an application crash, when a large integer argument is passed to certain functions, including
Int32Array, Float32Array, Float64Array, Uint32Array, Int16Array, or ArrayBuffer. The vendor has reportedly characterized this as a stability issue rather than a security issue.Recommendations
For Opera versions 11.60 and earlier, consider updating to a newer version to mitigate the risk of application crashes due to integer overflows. As a temporary workaround, avoid using large integer arguments with the affected functions until a patch is available.
Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Opera