Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!
Bug 74530 - net-www/opera Default Application "kfmclient exec" Security Issue
Summary: net-www/opera Default Application "kfmclient exec" Security Issue
Status: RESOLVED DUPLICATE of bug 74321
Alias: None
Product: Gentoo Security
Classification: Unclassified
Component: Vulnerabilities (show other bugs)
Hardware: All All
: High normal (vote)
Assignee: Gentoo Security
URL:
Whiteboard: C2 [upstream] jaervosz
Keywords:
Depends on:
Blocks:
 
Reported: 2004-12-15 10:32 UTC by Aarni Honka
Modified: 2005-07-17 13:06 UTC (History)
1 user (show)

See Also:
Package list:
Runtime testing required: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Aarni Honka 2004-12-15 10:32:38 UTC
TITLE:
Opera Default Application "kfmclient exec" Security Issue

SECUNIA ADVISORY ID:
SA13447

VERIFY ADVISORY:
http://secunia.com/advisories/13447/

CRITICAL:
Less critical

IMPACT:
System access

WHERE:
>From remote

SOFTWARE:
Opera 7.x
http://secunia.com/product/761/

DESCRIPTION:
Giovanni Delvecchio has discovered a security issue in Opera, which
can be exploited by malicious people to compromise a user's system.

The problem is that a file with an unknown MIME type by default is
handled by "kfmclient exec". This can be exploited to execute shell
commands by tricking a user into opening a malicious
shortcut/launcher containing an "Exec" entry.

Successful exploitation requires some user interaction.

The issue has been confirmed on Opera 7.54u1 for Linux. Other
versions may also be affected.

Note: Opera for Windows is not affected.

SOLUTION:
Do not open files from untrusted sources via the "kfmclient exec"
handler.

PROVIDED AND/OR DISCOVERED BY:
Giovanni Delvecchio

ORIGINAL ADVISORY:
http://www.zone-h.org/advisories/read/id=6503
Comment 1 Thierry Carrez (RETIRED) gentoo-dev 2004-12-15 12:16:17 UTC
If I am not mistaken...

*** This bug has been marked as a duplicate of 74321 ***