Описание
Use-after-free vulnerability in the BitTorrent support in Opera before 9.22 allows user-assisted remote attackers to execute arbitrary code via a crafted header in a torrent file, which leaves a dangling pointer to an invalid object.
Ссылки
- Broken LinkVendor Advisory
- Broken LinkPatch
- Broken Link
- Third Party Advisory
- Broken Link
- Broken LinkPatchVendor Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Third Party AdvisoryVDB Entry
- Broken LinkVendor Advisory
- Broken LinkPatch
- Broken Link
- Third Party Advisory
- Broken Link
- Broken LinkPatchVendor Advisory
- Broken LinkThird Party AdvisoryVDB Entry
- Broken LinkThird Party AdvisoryVDB Entry
- Broken Link
- Third Party AdvisoryVDB Entry
Уязвимые конфигурации
Конфигурация 1Версия до 9.22 (исключая)
cpe:2.3:a:opera:opera_browser:*:*:*:*:*:*:*:*
EPSS
Процентиль: 91%
0.07276
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-416
Связанные уязвимости
ubuntu
около 18 лет назад
Use-after-free vulnerability in the BitTorrent support in Opera before 9.22 allows user-assisted remote attackers to execute arbitrary code via a crafted header in a torrent file, which leaves a dangling pointer to an invalid object.
github
больше 3 лет назад
Use-after-free vulnerability in the BitTorrent support in Opera before 9.22 allows user-assisted remote attackers to execute arbitrary code via a crafted header in a torrent file, which leaves a dangling pointer to an invalid object.
EPSS
Процентиль: 91%
0.07276
Низкий
9.3 Critical
CVSS2
Дефекты
CWE-416