Описание
Security update for Opera
This update for Opera 54.0.2952.41 fixes multiple issues.
- CVE-2018-6148: Incorrect handling of CSP header (boo#1096508)
This update to version 54.0.2952.41 also contains all security and bug fixes in this upstream version, including all fixes in the chromium engine.
Список пакетов
openSUSE Leap 15.0 NonFree
opera-54.0.2952.41-lp150.2.3.1
Ссылки
- E-Mail link for openSUSE-SU-2018:1859-1
- SUSE Security Ratings
- SUSE Bug 1096508
- SUSE Bug 1099568
- SUSE CVE CVE-2018-6148 page
Описание
Incorrect implementation in Content Security Policy in Google Chrome prior to 67.0.3396.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page.
Затронутые продукты
openSUSE Leap 15.0 NonFree:opera-54.0.2952.41-lp150.2.3.1
Ссылки
- CVE-2018-6148
- SUSE Bug 1096508