Multiple Vendor URI Protocol Handler Arbitrary File Creation/Modification Vulnerability

Solution:
Opera has provided an upgrade that deals with this issue. The invulnerable upgrade, version 7.50, is currently available.

Mandrake has released advisory MDKSA-2004:047 dealing with this issue for kdelibs. Please see the referenced advisory for more information and details on obtaining fixes.

Gentoo has released advisory GLSA 200405-19 dealing with this issues. They have recommended that the affected software (Opera) be upgraded using the followin commands:

# emerge sync

# emerge -pv ">=net-www/opera-7.50_beta1"
# emerge ">=net-www/opera-7.50_beta1"

Fixes:


Opera Software Opera Web Browser 7.23


 

Privacy Statement
Copyright 2010, SecurityFocus