Opera before 9.23 allows remote attackers to execute arbitrary code via crafted Javascript that triggers a "virtual function call on an invalid pointer."
The product attempts to return a memory resource to the system, but it calls the wrong release function or calls the appropriate release function incorrectly.
Link | Tags |
---|---|
http://www.securitytracker.com/id?1018572 | vdb entry third party advisory broken link |
http://www.vupen.com/english/advisories/2007/2904 | vdb entry broken link |
http://secunia.com/advisories/26635 | third party advisory broken link |
http://lists.opensuse.org/opensuse-security-announce/2007-08/msg00006.html | third party advisory vendor advisory |
http://www.opera.com/support/search/view/865/ | broken link vendor advisory |
http://security.gentoo.org/glsa/glsa-200708-17.xml | third party advisory vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/36039 | vdb entry third party advisory |
http://www.securityfocus.com/bid/25331 | exploit vdb entry third party advisory broken link |
http://secunia.com/advisories/26545 | third party advisory broken link |
http://secunia.com/advisories/26477 | third party advisory patch broken link |