Synopsis
The remote host contains a web browser that is affected by multiple vulnerabilities.
Description
The version of Opera installed on the remote host is earlier than 12.10 and is, therefore, reportedly affected by the following vulnerabilities :
- An error exists related to certificate revocation checking that can allow the application to indicate that a site is secure even though the check has not completed. (1029)
- An error exists related to Cross-Origin Resource Sharing (CORS) handling that can allow specially crafted requests to aid in disclosing sensitive data. (1030)
- An error exists related to data URIs that allows bypassing of the 'Same Origin Policy' and cross-site scripting attacks. (1031)
- An error exists related to JavaScript and native objects that allows domains to override methods of other domains. This error can aid in cross-site scripting attacks. (1032)
- An error exists related to SVG image handling that can result in arbitrary code execution. (1033)
- An error exists related to the handling of shortcuts in inline elements that can cause the application to be redirected to malicious pages. This error can aid in phishing attacks. (1034)
- An error exists related to the handling of 'WebP' images that can allow disclosure of memory contents.
(1035)
Solution
Upgrade to Opera 12.10 or later.
Plugin Details
File Name: opera_1210.nasl
Agent: windows
Supported Sensors: Nessus Agent, Nessus
Risk Information
Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C
Vulnerability Information
CPE: cpe:/a:opera:opera_browser
Required KB Items: installed_sw/Opera
Exploit Ease: No known exploits are available
Patch Publication Date: 11/6/2012
Vulnerability Publication Date: 11/6/2012
Reference Information
CVE: CVE-2012-6461, CVE-2012-6462, CVE-2012-6463, CVE-2012-6464, CVE-2012-6465, CVE-2012-6466, CVE-2012-6467
BID: 56407, 57120, 57121, 57132
CWE: 20, 442, 629, 711, 712, 722, 725, 74, 750, 751, 79, 800, 801, 809, 811, 864, 900, 928, 931, 990