Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xfj5-6f3c-c22p

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Opera before 12.10 does not properly handle incorrect size data in a WebP image, which allows remote attackers to obtain potentially sensitive information from process memory by using a crafted image as the fill pattern for a canvas.

Opera before 12.10 does not properly handle incorrect size data in a WebP image, which allows remote attackers to obtain potentially sensitive information from process memory by using a crafted image as the fill pattern for a canvas.

EPSS

Процентиль: 46%
0.0023
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 13 лет назад

Opera before 12.10 does not properly handle incorrect size data in a WebP image, which allows remote attackers to obtain potentially sensitive information from process memory by using a crafted image as the fill pattern for a canvas.

EPSS

Процентиль: 46%
0.0023
Низкий

Дефекты

CWE-200