Vulnerabilities > CVE-2009-2540 - Resource Management Errors vulnerability in Opera Browser
Attack vector
NETWORK Attack complexity
MEDIUM Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
PARTIAL Summary
Opera, possibly 9.64 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
Exploit-Db
id | EDB-ID:9160 |
Oval
accepted | 2014-03-17T04:00:23.420-04:00 | ||||||||||||||||
class | vulnerability | ||||||||||||||||
contributors |
| ||||||||||||||||
definition_extensions |
| ||||||||||||||||
description | Opera, possibly 9.64 and earlier, allows remote attackers to cause a denial of service (memory consumption) via a large integer value for the length property of a Select object, a related issue to CVE-2009-1692. | ||||||||||||||||
family | windows | ||||||||||||||||
id | oval:org.mitre.oval:def:5957 | ||||||||||||||||
status | accepted | ||||||||||||||||
submitted | 2009-10-23T12:57:10 | ||||||||||||||||
title | Opera integer value denial of service | ||||||||||||||||
version | 11 |
References
- http://www.exploit-db.com/exploits/9160
- http://www.g-sec.lu/one-bug-to-rule-them-all.html
- http://www.securityfocus.com/archive/1/504969/100/0/threaded
- http://www.securityfocus.com/archive/1/504988/100/0/threaded
- http://www.securityfocus.com/archive/1/504989/100/0/threaded
- http://www.securityfocus.com/archive/1/505006/100/0/threaded
- https://exchange.xforce.ibmcloud.com/vulnerabilities/52874
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A5957