Category Archives: advisory

Clickjacking attacks may be carried out against internal opera: URLs – Opera Security Advisories

Severity High Description Internal opera: URLs which may be used to modify the Opera configuration have some intentional restrictions that are designed to mitigate possible clickjacking attacks. Certain manipulations can trick Opera into bypassing those restrictions, which would then allow clickjacking attacks to be carried out. Opera’s response Opera Software has released Opera 11.01, where…

Certain DOM manipulations can allow execution of arbitrary code – Opera Security Advisories

Severity High Description Various unexpected DOM manipulations can cause Opera to crash. In some cases, these crashes can occur in a way that allows execution of arbitrary code. To inject code, additional techniques may have to be employed. Opera’s response Opera Software has released Opera 11.00, where several related crashes have been fixed. Credits Thanks…

Opera may be used as a vector for multiple font issues in the underlying operating system – Opera Security Advisories

Affected versions This vulnerability may be targeted through Opera for Windows. Severity Critical Description A flaw in the font handling on the Windows operating system has been fixed by Microsoft – see bulletins MS10-091 and MS10-063. On unpatched systems, Web fonts may be used to exploit this issue through Opera. Opera’s response Opera urgently recommends…