openSUSE Security Update : opera (openSUSE-SU-2012:1481-1)

High Nessus Plugin ID 74809


The remote openSUSE host is missing a security update.


This Opera 12.10 security update fixes following security issues :

-an issue that could cause Opera not to correctly check for certificate revocation;

-an issue where CORS requests could incorrectly retrieve contents of cross origin pages;

-an issue where data URIs could be used to facilitate Cross-Site Scripting;

-a high severity issue, as reported by Gareth Heyes; details will be disclosed at a later date

-an issue where specially crafted SVG images could allow execution of arbitrary code;

-a moderate severity issue, as reported by the Google Security Group;
details will be disclosed at a later date Full changelog available at:


Update the affected opera packages.

See Also

Plugin Details

Severity: High

ID: 74809

File Name: openSUSE-2012-777.nasl

Version: $Revision: 1.1 $

Type: local

Agent: unix

Published: 2014/06/13

Modified: 2014/06/13

Dependencies: 12634

Risk Information

Risk Factor: High

Vulnerability Information

CPE: p-cpe:/a:novell:opensuse:opera, p-cpe:/a:novell:opensuse:opera-gtk, p-cpe:/a:novell:opensuse:opera-kde4, cpe:/o:novell:opensuse:12.1

Required KB Items: Host/local_checks_enabled, Host/SuSE/release, Host/SuSE/rpm-list, Host/cpu

Patch Publication Date: 2012/11/07