CVE-2008-4200

Publication date 27 September 2008

Last updated 24 July 2024


Ubuntu priority

Description

Opera before 9.52 does not ensure that the address field of a news feed represents the feed's actual URL, which allows remote attackers to change this field to display the URL of a page containing web script controlled by the attacker.

Status

Package Ubuntu Release Status
opera 8.10 intrepid Not in release
8.04 LTS hardy Not in release
7.10 gutsy Not in release
7.04 feisty Ignored end of life, was needed
6.06 LTS dapper Not in release