Back to Database
Status published
Critical
CVE-2008-5679
The HTML parsing engine in Opera before 9.63 allows remote...
Vulnerability Description
The HTML parsing engine in Opera before 9.63 allows remote attackers to execute arbitrary code via crafted web pages that trigger an invalid pointer calculation and heap corruption.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2008-5679
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/archive/1/499315/100/0/threaded
- http://www.opera.com/docs/changelogs/linux/963/
- http://securityreason.com/securityalert/4791
- http://www.securitytracker.com/id?1021460
- http://www.opera.com/support/kb/view/921/
- http://secunia.com/advisories/34294
- http://www.nruns.com/security_advisory_opera_html_parsing_code_execution.php
- http://security.gentoo.org/glsa/glsa-200903-30.xml
More from opera
View All →CVE-2019-18624
Opera Mini for Android allows attackers to bypass intended restrictions...
Critical
9.8
CVE-2019-13607
The Opera Mini application through 16.0.14 for iOS has a...
Medium
6.1
CVE-2019-12278
Opera through 53 on Android allows Address Bar Spoofing. Characters...
Medium
4.3
CVE-2018-6608
In the WebRTC component in Opera 51.0.2830.55, after visiting a...
Medium
4.3
CVE-2018-18913
Opera before 57.0.3098.106 is vulnerable to a DLL Search Order...
High
7.8
Affected Vendor
opera
View all reports →Affected Software
opera
Vulnerable Versions:
0, 5..10, 5.0, 5.1, 5.02, 5.2, 5.3, 5.4, 5.5, 5.6, 5.7, 5.8, 5.9, 5.10, 5.11, 5.12, 6, 6.0, 6.1, 6.01, 6.02, 6.03, 6.04, 6.05, 6.06, 6.11, 6.12, 7, 7.0, 7.01, 7.02, 7.03, 7.10, 7.11, 7.20, 7.21, 7.22, 7.23, 7.50, 7.51, 7.52, 7.53, 7.54, 8.0, 8.01, 8.02, 8.50, 8.51, 8.52, 8.53, 8.54, 9.0, 9.01, 9.02, 9.6, 9.10, 9.20, 9.21, 9.22, 9.23, 9.24, 9.25, 9.26, 9.27, 9.50, 9.51, 9.52, 9.60, 9.61
Timeline
Official Publish:
December 19th, 2008
Last Modified:
August 7th, 2024
Added to House:
July 18th, 2026
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.