Opera Software fixes flaw with browser version 9.62

By

Nine days after version 9.61 was released, the newest browser version patches a major security flaw in the "history search" page.


Nine days after version 9.61 was released, the newest browser version patches a major security flaw in the "history search" page.

Opera Software on Thursday announced the release of Opera 9.62 which patched a major security flaw in the “history search” page.

“We encourage users to update as quickly as possible,” Opera spokesman Thomas Ford told SCMagazineUS.com Tuesday.

The patch comes just days after security researchers Aviv Raff, Roberto Suggi and Stefano Di Paola reported that the browsers "history search" page did not validate user input and left users open to a remote code execution exploit.

An attacker would have been able to create a specially crafted page that would automatically open the history search page and exploit the vulnerability, Raff said. If a victim visited this web page, a trojan would be silently downloaded and installed on the victim's machine.

Opera just released version 9.61 last week, which patched a similar problem on the same local resource — the history search page — that allowed an attacker to view a user's history.

See original article on scmagazineus.com
Got a news tip for our journalists? Share it with us anonymously here.
Copyright © SC Magazine, US edition
Tags:

Most Read Articles

Phishing attack nets enormous npm supply chain compromise

Phishing attack nets enormous npm supply chain compromise

VicRoads to phase out passwords in favour of passkeys

VicRoads to phase out passwords in favour of passkeys

Service NSW centralises security, networking in mammoth CloudOps overhaul

Service NSW centralises security, networking in mammoth CloudOps overhaul

Apple adds "mercenary spyware" protection to new A19 chip

Apple adds "mercenary spyware" protection to new A19 chip

Log In

  |  Forgot your password?