[VIM] opera_configoverwrite.rb

dm at securityfocus.com dm at securityfocus.com
Fri Jul 23 11:44:23 CDT 2010


Hey,

Does anybody (CVE, OSVDB, etc.) have a record for this vulnerability?

https://www.metasploit.com/redmine/projects/framework/repository/revisions/7724/entry/modules/exploits/multi/browser/opera_configoverwrite.rb

I can't find one in our VDB -- at least nothing specific enough to pin
it to this exploit.

It's been exploited in the wild by a few exploit packs, namely
CRiMEPACK. 

I talked to someone at Opera and they haven't been able to reproduce
it in 9.x versions (which it is supposed to affect). They're not sure
exactly when it was fixed.

-- 
Dave McKinney
Symantec

keyID: E461AE4E
key fingerprint = F1FC 9073 09FA F0C7 500D  D7EB E985 FAF3 E461 AE4E



More information about the VIM mailing list