Lucene search

K
cveMitreCVE-2011-1824
HistoryMay 10, 2011 - 6:55 p.m.

CVE-2011-1824

2011-05-1018:55:01
CWE-20
mitre
web.nvd.nist.gov
33
cve-2011-1824
vegaopbitmap
addline
opera
memory initialization
remote attackers
denial of service
application crash
arbitrary code
nvd

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

7.8

Confidence

High

EPSS

0.039

Percentile

92.0%

The VEGAOpBitmap::AddLine function in Opera before 10.61 does not properly initialize memory during processing of the SIZE attribute of a SELECT element, which allows remote attackers to trigger an invalid memory write operation, and consequently cause a denial of service (application crash) or possibly execute arbitrary code, via a large integer attribute value.

Affected configurations

Nvd
Node
operaopera_browserRange10.60
OR
operaopera_browserMatch5.0
OR
operaopera_browserMatch5.0beta2
OR
operaopera_browserMatch5.0beta3
OR
operaopera_browserMatch5.0beta4
OR
operaopera_browserMatch5.0beta5
OR
operaopera_browserMatch5.0beta6
OR
operaopera_browserMatch5.0beta7
OR
operaopera_browserMatch5.0beta8
OR
operaopera_browserMatch5.02
OR
operaopera_browserMatch5.10
OR
operaopera_browserMatch5.11
OR
operaopera_browserMatch5.12
OR
operaopera_browserMatch6.0
OR
operaopera_browserMatch6.0beta1
OR
operaopera_browserMatch6.0beta2
OR
operaopera_browserMatch6.0tp1
OR
operaopera_browserMatch6.0tp2
OR
operaopera_browserMatch6.0tp3
OR
operaopera_browserMatch6.1
OR
operaopera_browserMatch6.01
OR
operaopera_browserMatch6.1beta1
OR
operaopera_browserMatch6.02
OR
operaopera_browserMatch6.03
OR
operaopera_browserMatch6.04
OR
operaopera_browserMatch6.05
OR
operaopera_browserMatch6.06
OR
operaopera_browserMatch6.11
OR
operaopera_browserMatch6.12
OR
operaopera_browserMatch7.0
OR
operaopera_browserMatch7.0beta1
OR
operaopera_browserMatch7.0beta1_v2
OR
operaopera_browserMatch7.0beta2
OR
operaopera_browserMatch7.01
OR
operaopera_browserMatch7.02
OR
operaopera_browserMatch7.03
OR
operaopera_browserMatch7.10
OR
operaopera_browserMatch7.10beta1
OR
operaopera_browserMatch7.11
OR
operaopera_browserMatch7.11beta2
OR
operaopera_browserMatch7.20
OR
operaopera_browserMatch7.20beta7
OR
operaopera_browserMatch7.21
OR
operaopera_browserMatch7.22
OR
operaopera_browserMatch7.23
OR
operaopera_browserMatch7.50
OR
operaopera_browserMatch7.50beta1
OR
operaopera_browserMatch7.51
OR
operaopera_browserMatch7.52
OR
operaopera_browserMatch7.53
OR
operaopera_browserMatch7.54
OR
operaopera_browserMatch7.54update1
OR
operaopera_browserMatch7.54update2
OR
operaopera_browserMatch7.60
OR
operaopera_browserMatch8.0
OR
operaopera_browserMatch8.0beta1
OR
operaopera_browserMatch8.0beta2
OR
operaopera_browserMatch8.0beta3
OR
operaopera_browserMatch8.01
OR
operaopera_browserMatch8.02
OR
operaopera_browserMatch8.50
OR
operaopera_browserMatch8.51
OR
operaopera_browserMatch8.52
OR
operaopera_browserMatch8.53
OR
operaopera_browserMatch8.54
OR
operaopera_browserMatch9.0
OR
operaopera_browserMatch9.0beta1
OR
operaopera_browserMatch9.0beta2
OR
operaopera_browserMatch9.01
OR
operaopera_browserMatch9.02
OR
operaopera_browserMatch9.10
OR
operaopera_browserMatch9.12
OR
operaopera_browserMatch9.20
OR
operaopera_browserMatch9.20beta1
OR
operaopera_browserMatch9.21
OR
operaopera_browserMatch9.22
OR
operaopera_browserMatch9.23
OR
operaopera_browserMatch9.24
OR
operaopera_browserMatch9.25
OR
operaopera_browserMatch9.26
OR
operaopera_browserMatch9.27
OR
operaopera_browserMatch9.50
OR
operaopera_browserMatch9.50beta1
OR
operaopera_browserMatch9.50beta2
OR
operaopera_browserMatch9.51
OR
operaopera_browserMatch9.52
OR
operaopera_browserMatch9.60
OR
operaopera_browserMatch9.60beta1
OR
operaopera_browserMatch9.61
OR
operaopera_browserMatch9.62
OR
operaopera_browserMatch9.63
OR
operaopera_browserMatch9.64
OR
operaopera_browserMatch10.00
OR
operaopera_browserMatch10.00beta1
OR
operaopera_browserMatch10.00beta2
OR
operaopera_browserMatch10.00beta3
OR
operaopera_browserMatch10.01
OR
operaopera_browserMatch10.10
OR
operaopera_browserMatch10.10beta1
OR
operaopera_browserMatch10.50
OR
operaopera_browserMatch10.50beta1
OR
operaopera_browserMatch10.50beta2
OR
operaopera_browserMatch10.51
OR
operaopera_browserMatch10.52
OR
operaopera_browserMatch10.53
OR
operaopera_browserMatch10.53b
OR
operaopera_browserMatch10.54
OR
operaopera_browserMatch10.60beta1
VendorProductVersionCPE
operaopera_browser*cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:*:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta2:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta3:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta4:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta5:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta6:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta7:*:*:*:*:*:*
operaopera_browser5.0cpe:2.3:a:opera:opera_browser:5.0:beta8:*:*:*:*:*:*
operaopera_browser5.02cpe:2.3:a:opera:opera_browser:5.02:*:*:*:*:*:*:*
Rows per page:
1-10 of 1081

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

AI Score

7.8

Confidence

High

EPSS

0.039

Percentile

92.0%