The canvas.createPattern function in Opera 9.x before 9.22 for Linux, FreeBSD, and Solaris does not clear memory before using it to process a new pattern, which allows remote attackers to obtain sensitive information (memory contents) via JavaScript.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opera_browser | Opera | 9.0 (including) | 9.0 (including) |
Opera_browser | Opera | 9.0-beta1 (including) | 9.0-beta1 (including) |
Opera_browser | Opera | 9.0-beta2 (including) | 9.0-beta2 (including) |
Opera_browser | Opera | 9.01 (including) | 9.01 (including) |
Opera_browser | Opera | 9.02 (including) | 9.02 (including) |
Opera_browser | Opera | 9.10 (including) | 9.10 (including) |
Opera_browser | Opera | 9.12 (including) | 9.12 (including) |
Opera_browser | Opera | 9.20 (including) | 9.20 (including) |
Opera_browser | Opera | 9.20-beta1 (including) | 9.20-beta1 (including) |
Opera_browser | Opera | 9.21 (including) | 9.21 (including) |
Opera | Ubuntu | dapper | * |
Opera | Ubuntu | edgy | * |
Opera | Ubuntu | feisty | * |
Opera | Ubuntu | upstream | * |