Opera 9 allows remote attackers to cause a denial of service (crash) via a crafted web page that triggers an out-of-bounds memory access, related to an iframe and JavaScript that accesses certain style sheets properties.
The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.
Link | Tags |
---|---|
http://securityreason.com/securityalert/1185 | third party advisory broken link |
http://www.securityfocus.com/archive/1/438872/100/0/threaded | mailing list vdb entry third party advisory broken link |
http://www.securityfocus.com/bid/18758 | exploit vdb entry third party advisory broken link |
https://exchange.xforce.ibmcloud.com/vulnerabilities/27531 | vdb entry third party advisory |
http://www.osvdb.org/27511 | vdb entry broken link |
http://echo.or.id/adv/adv35-y3dips-2006.txt | broken link exploit |
https://www.exploit-db.com/exploits/1972 | exploit vdb entry third party advisory |