CVE-2007-4944

Publication date 18 September 2007

Last updated 24 July 2024


Ubuntu priority

Description

The canvas.createPattern function in Opera 9.x before 9.22 for Linux, FreeBSD, and Solaris does not clear memory before using it to process a new pattern, which allows remote attackers to obtain sensitive information (memory contents) via JavaScript.

Status

Package Ubuntu Release Status
opera 7.04 feisty
Fixed 9.23-20070809.6feisty1
6.10 edgy
Fixed 9.23-20070809.6edgy1
6.06 LTS dapper
Fixed 9.23-20070809.6dapper1


Access our resources on patching vulnerabilities