Opera before 10.54 on Windows and Mac OS X, and before 10.60 on UNIX platforms, does not properly restrict certain uses of homograph characters in domain names, which makes it easier for remote attackers to spoof IDN domains via unspecified choices of characters.
Weaknesses in this category are related to the management of permissions, privileges, and other security features that are used to perform access control.
Link | Tags |
---|---|
http://www.vupen.com/english/advisories/2010/1673 | vdb entry patch vendor advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11603 | vdb entry signature |
http://www.securityfocus.com/bid/40973 | vdb entry |
http://www.opera.com/docs/changelogs/unix/1060/ | |
http://www.vupen.com/english/advisories/2010/1529 | vdb entry patch vendor advisory |
http://www.opera.com/docs/changelogs/mac/1054/ | |
http://secunia.com/advisories/40250 | third party advisory vendor advisory |
http://www.opera.com/support/search/view/961/ | vendor advisory |
http://www.opera.com/docs/changelogs/windows/1054/ |