PT-2012-3007 · Opera · Opera
Published
2012-02-07
·
Updated
2017-08-29
·
CVE-2012-1003
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:N/I:N/A:P |
Name of the Vulnerable Software and Affected Versions
Opera versions 11.60 and earlier
Description
The issue is related to multiple integer overflows that can cause a denial of service, specifically an application crash, when a large integer argument is passed to certain functions, including
Int32Array, Float32Array, Float64Array, Uint32Array, Int16Array, or ArrayBuffer. The vendor has reportedly characterized this as a stability issue rather than a security issue.Recommendations
For Opera versions 11.60 and earlier, consider updating to a newer version to mitigate the risk of application crashes due to integer overflows. As a temporary workaround, avoid using large integer arguments with the affected functions until a patch is available.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Opera