Opera < 7.23 Zip File Processing Crafted File Handling Overflow

High Nessus Plugin ID 14250


Arrbitrary code may be run on the remote host.


The version of Opera on the remote host is vulnerable to a security weakness.

A problem has been identified in the handling of zipped skin files by Opera. Because of this, it may be possible for an attacker to gain unauthorized access to a system using the vulnerable browser.


Install Opera 7.23 or newer.

Plugin Details

Severity: High

ID: 14250

File Name: opera_skin_zip_file_overflow.nasl

Version: $Revision: 1.15 $

Type: local

Agent: windows

Family: Windows

Published: 2004/08/10

Modified: 2011/11/28

Dependencies: 21746

Risk Information

Risk Factor: High


Base Score: 7.5

Temporal Score: 5.5

Vector: CVSS2#AV:N/AC:L/Au:N/C:P/I:P/A:P

Temporal Vector: CVSS2#E:U/RL:OF/RC:ND

Vulnerability Information

CPE: cpe:/a:opera:opera_browser

Required KB Items: SMB/Opera/Version

Exploit Available: false

Exploit Ease: No known exploits are available

Vulnerability Publication Date: 2003/11/22

Reference Information

BID: 9089

OSVDB: 2854