CVE-2004-1491: Medium severity Opera Opera Browser vulnerability
Published Dec 31, 2004
·Updated
Opera 7.54 and earlier uses kfmclient exec to handle unknown MIME types, which allows remote attackers to execute arbitrary code via a shortcut or launcher that contains an Exec entry.
Affected Software
35 affected components
Opera Opera Browser<=7.54
Gentoo Linux
KDE kde=3.2.3
SUSE SuSE Linux=1.0
SUSE SuSE Linux=2.0
SUSE SuSE Linux=3.0
SUSE SuSE Linux=4.0
SUSE SuSE Linux=4.2
SUSE SuSE Linux=4.3
SUSE SuSE Linux=4.4
SUSE SuSE Linux=4.4.1
SUSE SuSE Linux=5.0
SUSE SuSE Linux=5.1
SUSE SuSE Linux=5.2
SUSE SuSE Linux=5.3
SUSE SuSE Linux=6.0
SUSE SuSE Linux=6.1
SUSE SuSE Linux=6.1-alpha
SUSE SuSE Linux=6.2
SUSE SuSE Linux=6.3
SUSE SuSE Linux=6.3-alpha
SUSE SuSE Linux=6.4
SUSE SuSE Linux=6.4-alpha
SUSE SuSE Linux=7.0
SUSE SuSE Linux=7.0-alpha
SUSE SuSE Linux=7.1
SUSE SuSE Linux=7.1-alpha
SUSE SuSE Linux=7.2
SUSE SuSE Linux=7.3
SUSE SuSE Linux=8.0
SUSE SuSE Linux=8.1
SUSE SuSE Linux=8.2
SUSE SuSE Linux=9.0
SUSE SuSE Linux=9.1
SUSE SuSE Linux=9.2
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Feb 17, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1491?
CVE-2004-1491 is classified as a critical vulnerability due to its potential to allow remote code execution.
2
How do I fix CVE-2004-1491?
To fix CVE-2004-1491, users should upgrade to a later version of Opera beyond 7.54 that addresses this vulnerability.
3
What software is affected by CVE-2004-1491?
CVE-2004-1491 affects Opera version 7.54 and earlier, along with several versions of SUSE Linux.
4
What type of attack does CVE-2004-1491 enable?
CVE-2004-1491 enables remote attackers to execute arbitrary code on the user's system.
5
Is CVE-2004-1491 still a threat today?
While CVE-2004-1491 is less relevant for modern systems, any legacy usage of the affected software versions remains vulnerable.