SUSE-SA:2005:031: opera

medium Nessus Plugin ID 19240

Synopsis

The remote host is missing a vendor-supplied security patch

Description

The remote host is missing the patch for the advisory SUSE-SA:2005:031 (opera).


The commercial web browser Opera has been updated to the 8.0 version, fixing all currently known security problems, including:

- CVE-2005-0235: IDN cloaking / homograph attack allows easy spoofing of domain names.

- CVE-2005-0456: Opera did not validate base64 encoded binary in data:
URLs correctly.

- CVE-2005-1139: Opera showed the Organizational Information of SSL certificates which could be easily spoofed and be used for phishing attacks.

A full Changelog can be found on:
http://www.opera.com/linux/changelogs/800/

Solution

http://www.suse.de/security/advisories/2005_31_opera.html

Plugin Details

Severity: Medium

ID: 19240

File Name: suse_SA_2005_031.nasl

Version: 1.9

Agent: unix

Published: 7/20/2005

Updated: 1/14/2021

Supported Sensors: Nessus Agent, Nessus

Vulnerability Information

Required KB Items: Host/SuSE/rpm-list