[Full-Disclosure] [ GLSA 200407-15 ] Opera: Multiple spoofing vulnerabilities

From: Sune Kloppenborg Jeppesen (jaervosz_at_gentoo.org)
Date: 07/20/04

  • Next message: Full-Disclosure: "Re: [Full-Disclosure] IE"
    To: gentoo-announce@gentoo.org
    Date: Tue, 20 Jul 2004 21:28:32 +0200
    
    

    -----BEGIN PGP SIGNED MESSAGE-----
    Hash: SHA1

    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
    Gentoo Linux Security Advisory GLSA 200407-15
    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -
                                                http://security.gentoo.org/
    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

      Severity: Normal
         Title: Opera: Multiple spoofing vulnerabilities
          Date: July 20, 2004
          Bugs: #56311, #56109
            ID: 200407-15

    - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - -

    Synopsis
    ========

    Opera contains three vulnerabilities, allowing an attacker to
    impersonate legitimate websites with URI obfuscation or to spoof
    websites with frame injection.

    Background
    ==========

    Opera is a multi-platform web browser.

    Affected packages
    =================

        -------------------------------------------------------------------
         Package / Vulnerable / Unaffected
        -------------------------------------------------------------------
      1 net-www/opera <= 7.52 >= 7.53

    Description
    ===========

    Opera fails to remove illegal characters from an URI of a link and to
    check that the target frame of a link belongs to the same website as
    the link. Opera also updates the address bar before loading a page.
    Additionally, Opera contains a certificate verification problem.

    Impact
    ======

    These vulnerabilities could allow an attacker to impersonate legitimate
    websites to steal sensitive information from users. This could be done
    by obfuscating the real URI of a link or by injecting a malicious frame
    into an arbitrary frame of another browser window.

    Workaround
    ==========

    There is no known workaround at this time. All users are encouraged to
    upgrade to the latest available version.

    Resolution
    ==========

    All Opera users should upgrade to the latest stable version:

        # emerge sync

        # emerge -pv ">=net-www/opera-7.53"
        # emerge ">=net-www/opera-7.53"

    References
    ==========

      [ 1 ] Bugtraq Announcement
            http://www.securityfocus.com/bid/10517
      [ 2 ] Secunia Advisory SA11978
            http://secunia.com/advisories/11978/
      [ 3 ] Secunia Advisory SA12028
            http://secunia.com/advisories/12028/
      [ 4 ] Opera Changelog
            http://www.opera.com/linux/changelogs/753/

    Availability
    ============

    This GLSA and any updates to it are available for viewing at
    the Gentoo Security Website:

        http://security.gentoo.org/glsa/glsa-200407-15.xml

    Concerns?
    =========

    Security is a primary focus of Gentoo Linux and ensuring the
    confidentiality and security of our users machines is of utmost
    importance to us. Any security concerns should be addressed to
    security@gentoo.org or alternatively, you may file a bug at
    http://bugs.gentoo.org.

    License
    =======

    Copyright 2004 Gentoo Foundation, Inc; referenced text
    belongs to its owner(s).

    The contents of this document are licensed under the
    Creative Commons - Attribution / Share Alike license.

    http://creativecommons.org/licenses/by-sa/1.0
    -----BEGIN PGP SIGNATURE-----
    Version: GnuPG v1.2.4 (GNU/Linux)

    iD8DBQFA/XJgzKC5hMHO6rkRAsw7AKCEwOCVjJJjNsymicSQe0VelGnz6QCfbYia
    UVsS/TvNJcPfLhkm7ZRRiOM=
    =lBS2
    -----END PGP SIGNATURE-----

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html


  • Next message: Full-Disclosure: "Re: [Full-Disclosure] IE"

    Relevant Pages

    • [ GLSA 200407-15 ] Opera: Multiple spoofing vulnerabilities
      ... websites with frame injection. ... Opera is a multi-platform web browser. ... Opera fails to remove illegal characters from an URI of a link and to ...
      (Bugtraq)
    • [ GLSA 200407-15 ] Opera: Multiple spoofing vulnerabilities
      ... websites with frame injection. ... Opera is a multi-platform web browser. ... Opera fails to remove illegal characters from an URI of a link and to ...
      (Full-Disclosure)
    • [NT] Opera JavaScript Protocol Vulnerability
      ... Opera allows the location of a frame to be overwritten by an URL ... The following exploit has been tested to work on Opera 6.01, ... The information in this bulletin is provided "AS IS" without warranty of any kind. ... In no event shall we be liable for any damages whatsoever including direct, indirect, incidental, consequential, loss of business profits or special damages. ...
      (Securiteam)
    • Re: Browsers for those IE-only sites
      ... > Having failed at using certain websites with Opera, Konquerer, and ... I feel the need to install yet another browser on my FC3 box. ... Opera, KHTML and Gecko. ... force the web designer make a better web site, or you must try to run IE ...
      (Fedora)
    • Re: Netscape: font size
      ... > FrontPage is a great application and I use it every day to do professional ... But I also have about 14 different browsers and browser ... Is it a bug in Opera? ... Websites, woodworking, needlepoint, ...
      (microsoft.public.frontpage.client)