Opera HREF Malformed Server Name Heap Corruption Vulnerability

The following proof-of-concept HTML example has been supplied to demonstrate this issue:

<a href="file://server%%[many % characters]%%text" ></a>

Currently we are not aware of any exploits for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com <mailto:vuldb@securityfocus.com>.


 

Privacy Statement
Copyright 2010, SecurityFocus