Opera Patches Browser Security Holes
Incremental update fixes flaws involving Flash Player, Linux and Unix.
Matthew Broersma, Techworld.com
With HP wireless printers, you could have printed this from any room in the house. Live wirelessly. Print wirelessly.
Opera Software has released an upgrade addressing two serious security flaws involving Macromedia's Flash Player and a code execution bug affecting Linux and Unix users.
Flash Player Glitch
The first problem relates to Flash Player and was made public earlier in November. Macromedia warned that the bug in Flash Player, one of the most widely used pieces of software on the desktop, could allow attackers to take over a system.
The security research firm co-credited with discovering the bug, eEye, said it had demonstrated "reliable exploitation" using the bug in the Internet Explorer browser, but other browsers are also said to be just as open to attack.
Opera's fix arrived this week with Opera 8.5.1, which includes Flash Player version 7r61, fixing the problem. Opera 8.5 was released in the spring.
Linux, Unix Issue
The release also fixes a problem identified by Secunia Research, involving the shell script used to launch Opera in Linux and Unix environments. The flawed script processes shell commands enclosed in URLs passed to Opera via the command line.
That means an attacker could execute malicious shell commands on a user's system via an innocent-seeming URL in an e-mail message, for example. The command would be executed when the user clicked on the URL and invoked Opera.
The shell script bug doesn't just affect Opera--it is a variant of a problem with the Firefox browser disclosed in September.
Opera said the update also improves stability when viewing pages with Java for users of Japanese Mac OS X systems.
The Opera browser is gaining popularity as a smaller, lighter version of the open-source tool.
CDW Virtualization Center
Laptop Showcase
Related Browsers & Add-Ons Articles
- Apple: Forget ICards, Try Mail This June's Worldwide Developers Conference saw Apple unveil the iPhone 3G, firm up its iPhone 2.0 plans, offer a brief peek...
- Ease the Safari-to-iTunes Lyric Pasting Task If you enjoy having lyrics with your music in iTunes, you're probably familiar with the tools available to collect those...
- Bugs & Fixes: ITunes' CD Mounting Bug Most often, when Apple releases an minor update to one of its applications, such as iTunes, its purpose is to provide bug...
- Yelp for IPhone You'd be hard pressed to find a more opinionated, verbose, and downright catty group than the citizen reviewers on...
- IE 8 Hits Beta 2, Privacy Features Added Final release aimed at year-end.
Best Prices on System Utilities
Windows Live OneCare 2.0 (Full Product)Price: $22.95
Norton Partition Magic 8.0 Rev1RetailPrice: $17.99
Dragon Naturally Speaking 9 Preferred (Full Product)Price: $79.00
Norton SystemWorks 11.0 (Full Product)Price: $18.99
Windows Live OneCarePrice: $19.95
VMware Fusion (Full Product, Mac)Price: $43.99
- PC World Webcast: Going Green Wondering how to make your business greener? These tips will help your business save money, and save the environment.
- The Future Sales Force - A Consultative Approach This white paper discusses the challenges of selling complex products and services, and the new skill sets sales professionals must employ in today's evolving market.





"Opera Patches Browser Security Holes" Comments