Release date: 2011-12-06
Updated on: 2011-12-16
Affected Systems:
Opera Software Opera Web Browser 11.x
Unaffected system:
Opera Software Opera Web Browser 11.60
Description:
--------------------------------------------------------------------------------
Bugtraq id: 50915
Opera is a browser from Norway.
Opera has a security vulnerability in the implementation of the in operator. After successful exploitation, attackers can check the presence of other site variables, resulting in cross-domain information leakage.
<* Source: David Bloom
Link: http://www.opera.com/support/kb/view/1003/
*>
Suggestion:
--------------------------------------------------------------------------------
Vendor patch:
Opera Software
--------------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.opera.com/support/