Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 216022

Summary: www-client/opera: Release 9.27 fixes various security issues (CVE-2008-{1761,1762,1764})
Product: Gentoo Security Reporter: Hanno Böck <hanno>
Component: VulnerabilitiesAssignee: Gentoo Security <security>
Status: RESOLVED FIXED    
Severity: normal CC: jer, ollonois
Priority: High    
Version: unspecified   
Hardware: All   
OS: Linux   
URL: http://www.opera.com/docs/changelogs/linux/927/
Whiteboard: B2 [glsa]
Package list:
Runtime testing required: ---

Description Hanno Böck gentoo-dev 2008-04-03 11:00:38 UTC
From Changelog:
Security

    * Fixed an issue where newsfeed prompts could cause Opera to execute arbitrary code, as reported by Michal Zalewski. See our advisory.
    * Solved an issue where resized canvas patterns could cause Opera to execute arbitrary code, as reported by Michal Zalewski. See our advisory.
    * Improved keyboard handling of password inputs, as reported by Trystan S. 

No CVEs yet.
Comment 1 Robert Buchholz (RETIRED) gentoo-dev 2008-04-03 13:22:59 UTC
*** Bug 216021 has been marked as a duplicate of this bug. ***
Comment 2 Jeroen Roovers (RETIRED) gentoo-dev 2008-04-03 15:18:05 UTC
# ChangeLog for www-client/opera
# Copyright 2002-2008 Gentoo Foundation; Distributed under the GPL v2
# $Header: /var/cvsroot/gentoo-x86/www-client/opera/ChangeLog,v 1.209 2008/04/03 15:14:14 jer Exp $

*opera-9.27 (03 Apr 2008)

  03 Apr 2008; Jeroen Roovers <jer@gentoo.org> +opera-9.27.ebuild:
  Version bump (bug #216022)
Comment 3 Christian Faulhammer (RETIRED) gentoo-dev 2008-04-03 16:40:35 UTC
Thanks Jer. Let's go arches.
Target:
www-client/opera-9.27
KEYWORDS="amd64 ppc sparc x86 ~x86-fbsd"
Comment 4 Markus Meier gentoo-dev 2008-04-03 19:47:48 UTC
amd64/x86 stable
Comment 5 Tobias Scherbaum (RETIRED) gentoo-dev 2008-04-06 20:23:46 UTC
ppc stable
Comment 6 Jeroen Roovers (RETIRED) gentoo-dev 2008-04-07 16:48:04 UTC
Marked stable for SPARC.
Comment 7 Jeroen Roovers (RETIRED) gentoo-dev 2008-04-07 16:53:53 UTC
opera-9.26.ebuild removed from the tree.
Comment 8 Peter Volkov (RETIRED) gentoo-dev 2008-04-08 05:41:22 UTC
Fixed in release snapshot.
Comment 9 Robert Buchholz (RETIRED) gentoo-dev 2008-04-14 23:03:28 UTC
GLSA 200804-14