Release date: 2012-3 3
Updated on: 2012-12-06
Affected Systems:
Opera Software Opera Web Browser 12.11
Description:
--------------------------------------------------------------------------------
Bugtraq id: 56788
Opera is a browser from Norway that features fast speed, saving system resources, strong customization ability, high security, and small size. It is one of the most popular browsers.
Opera Web Browser 12.11 and other versions have the heap cracking vulnerability when processing Gif files. Attackers can exploit this vulnerability to cause the affected applications to crash and even arbitrary code execution.
<* Source: coolkaveh
Link: http://www.exploit-db.com/exploits/23107/
*>
Test method:
--------------------------------------------------------------------------------
Alert
The following procedures (methods) may be offensive and are intended only for security research and teaching. Users are at your own risk!
Http://www21.zippyshare.com/v/83302158/file.html
Http://www.exploit-db.com/sploits/23107.zip
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Opera Software
--------------
Currently, the vendor does not provide patches or upgrade programs. We recommend that users who use the software follow the vendor's homepage to obtain the latest version:
Http://www.opera.com/download/