CVE-2011-1824: Input Validation
The VEGAOpBitmap::AddLine function in Opera before 10.61 does not properly initialize memory during processing of the SIZE attribute of a SELECT element, which allows remote attackers to trigger an invalid memory write operation, and consequently cause a denial of service (application crash) or possibly execute arbitrary code, via a large integer attribute value.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1824?
CVE-2011-1824 is classified as a denial of service vulnerability due to memory corruption issues in the Opera browser.
How do I fix CVE-2011-1824?
To fix CVE-2011-1824, update your Opera browser to version 10.61 or later.
What versions of Opera are affected by CVE-2011-1824?
CVE-2011-1824 affects all versions of Opera prior to 10.61.
What types of attacks can exploit CVE-2011-1824?
Attackers can exploit CVE-2011-1824 to trigger an invalid memory write operation, leading to potential application crashes.
Is there a workaround for CVE-2011-1824 if I cannot update Opera?
There are no specific workarounds documented for CVE-2011-1824; upgrading to the latest version is recommended.