漏洞信息详情
Opera Browser TBODY COL SPA内存破坏服务拒绝漏洞
- CNNVD编号:CNNVD-200410-028
- 危害等级: 低危
- CVE编号:
CVE-2004-1615
- 漏洞类型:
边界条件错误
- 发布时间:
2004-10-18
- 威胁类型:
远程
- 更新时间:
2005-10-20
- 厂 商:
opera_software - 漏洞来源:
Discovery is credi… -
漏洞简介
Opera存在漏洞。远程攻击者可以借助包含带有超大COL SPAN值的TBODY标签的网页或HTML邮件导致服务拒绝(无效内存引用和应用程序崩溃)。
漏洞公告
This issue will be reportedly addressed in Opera 7.60.
—
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com
参考网址
来源: BID
名称: 11441
链接:http://www.securityfocus.com/bid/11441
来源: XF
名称: opera-colspan-tbody-dos(17806)
链接:http://xforce.iss.net/xforce/xfdb/17806
来源: BUGTRAQ
名称: 20041018 Web browsers – a mini-farce
链接:http://marc.theaimsgroup.com/?l=bugtraq&m=109811406620511&w=2
来源: FULLDISC
名称: 20041018 Web browsers – a mini-farce
链接:http://lists.grok.org.uk/pipermail/full-disclosure/2004-October/027709.html
来源: lcamtuf.coredump.cx
链接:http://lcamtuf.coredump.cx/mangleme/gallery/