|
Internet & Netzwerk
|
|
Geschrieben von: Moderator
|
|
Dienstag, den 16. Dezember 2008 um 12:36 Uhr |
|
Eine neue Version 9.63 Build 10476 des Opera-Browsers steht zum Download bereit. Die neue Version beseitigt eine Reihe von Fehlern (siehe Changelog) und schließt sieben Sicherheitslücken.
 
Changelog:
- Â Manipulating text input contents can allow execution of arbitrary code, as reported by Red XIII. See our advisory
- Â HTML parsing flaw can cause Opera to execute arbitrary code, as reported by Alexios Fakos. See our advisory
- Â Long hostnames in file: URLs can cause execution of arbitrary code, as reported by Vitaly McLain. see our advisory
- Â Script injection in feed preview can reveal contents of unrelated news feeds, as reported by David Bloom. See our advisory
- Â Built-in XSLT templates can allow cross-site scripting, as reported by Robert Swiecki of the Google Security Team. See our advisory
- Â Fixed an issue that could reveal random data, as reported by Matthew of Hispasec Sistemas. Details will be disclosed at a later date
- Â SVG images embedded using 'img' tags can no longer execute Java or plugin content, suggested by Chris Evans
Homepage: http://www.opera.com/
Download: http://ftp.opera.com/pub/opera/win/963/int/Opera_963_in_Setup.exe
|