First published: Thu Jun 14 2012(Updated: )
Opera before 11.65 does not ensure that the address field corresponds to the displayed web page during blocked navigation, which makes it easier for remote attackers to conduct spoofing attacks by detecting and preventing attempts to load a different web page.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Opera | <=11.64 | |
Opera | =5.0 | |
Opera | =5.0-beta2 | |
Opera | =5.0-beta3 | |
Opera | =5.0-beta4 | |
Opera | =5.0-beta5 | |
Opera | =5.0-beta6 | |
Opera | =5.0-beta7 | |
Opera | =5.0-beta8 | |
Opera | =5.02 | |
Opera | =5.10 | |
Opera | =5.11 | |
Opera | =5.12 | |
Opera | =6.0 | |
Opera | =6.0-beta1 | |
Opera | =6.0-beta2 | |
Opera | =6.0-beta3 | |
Opera | =6.0-tp1 | |
Opera | =6.0-tp2 | |
Opera | =6.0-tp3 | |
Opera | =6.1 | |
Opera | =6.01 | |
Opera | =6.1-beta1 | |
Opera | =6.02 | |
Opera | =6.03 | |
Opera | =6.04 | |
Opera | =6.05 | |
Opera | =6.06 | |
Opera | =6.11 | |
Opera | =6.12 | |
Opera | =7.0 | |
Opera | =7.0-beta1 | |
Opera | =7.0-beta1_v2 | |
Opera | =7.0-beta2 | |
Opera | =7.01 | |
Opera | =7.02 | |
Opera | =7.03 | |
Opera | =7.10 | |
Opera | =7.10-beta1 | |
Opera | =7.11 | |
Opera | =7.11-beta2 | |
Opera | =7.20 | |
Opera | =7.20-beta7 | |
Opera | =7.21 | |
Opera | =7.22 | |
Opera | =7.23 | |
Opera | =7.50 | |
Opera | =7.50-beta1 | |
Opera | =7.51 | |
Opera | =7.52 | |
Opera | =7.53 | |
Opera | =7.54 | |
Opera | =7.54-update1 | |
Opera | =7.54-update2 | |
Opera | =8.0 | |
Opera | =8.0-beta1 | |
Opera | =8.0-beta2 | |
Opera | =8.0-beta3 | |
Opera | =8.01 | |
Opera | =8.02 | |
Opera | =8.50 | |
Opera | =8.51 | |
Opera | =8.52 | |
Opera | =8.53 | |
Opera | =8.54 | |
Opera | =9.0 | |
Opera | =9.0-beta1 | |
Opera | =9.0-beta2 | |
Opera | =9.01 | |
Opera | =9.02 | |
Opera | =9.10 | |
Opera | =9.20 | |
Opera | =9.20-beta1 | |
Opera | =9.21 | |
Opera | =9.22 | |
Opera | =9.23 | |
Opera | =9.24 | |
Opera | =9.25 | |
Opera | =9.26 | |
Opera | =9.27 | |
Opera | =9.50 | |
Opera | =9.50-beta1 | |
Opera | =9.50-beta2 | |
Opera | =9.51 | |
Opera | =9.52 | |
Opera | =9.60 | |
Opera | =9.60-beta1 | |
Opera | =9.61 | |
Opera | =9.62 | |
Opera | =9.63 | |
Opera | =9.64 | |
Opera | =10.00 | |
Opera | =10.00-beta1 | |
Opera | =10.00-beta2 | |
Opera | =10.00-beta3 | |
Opera | =10.01 | |
Opera | =10.10 | |
Opera | =10.10-beta1 | |
Opera | =10.11 | |
Opera | =10.50 | |
Opera | =10.50-beta1 | |
Opera | =10.50-beta2 | |
Opera | =10.51 | |
Opera | =10.52 | |
Opera | =10.52-beta1 | |
Opera | =10.52-beta2 | |
Opera | =10.53 | |
Opera | =10.53-beta1 | |
Opera | =10.54 | |
Opera | =10.60 | |
Opera | =10.60-beta1 | |
Opera | =10.61 | |
Opera | =10.62 | |
Opera | =10.63 | |
Opera | =11.00 | |
Opera | =11.00-beta | |
Opera | =11.01 | |
Opera | =11.10 | |
Opera | =11.10-beta | |
Opera | =11.11 | |
Opera | =11.50 | |
Opera | =11.50-beta | |
Opera | =11.51 | |
Opera | =11.52 | |
Opera | =11.60 | |
Opera | =11.60-beta | |
Opera | =11.61 | |
Opera | =11.62 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2012-3560 is considered medium as it allows spoofing attacks that may mislead users.
To fix CVE-2012-3560, upgrade to Opera version 11.65 or later.
CVE-2012-3560 affects versions of Opera before 11.65, as well as several older versions.
CVE-2012-3560 enables remote attackers to conduct spoofing attacks by improperly displaying the address field.
CVE-2012-3560 was discovered and reported in June 2012.