The TLS implementation in Opera before 12.13 does not properly consider timing side-channel attacks on a MAC check operation during the processing of malformed CBC padding, which allows remote attackers to conduct distinguishing attacks and plaintext-recovery attacks via statistical analysis of timing data for crafted packets, a related issue to CVE-2013-0169.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Opera_browser | Opera | 12.11 | 12.11 |
Opera_browser | Opera | * | 12.12 |
Opera_browser | Opera | 12.10 | 12.10 |
Opera_browser | Opera | 12.02 | 12.02 |
Opera_browser | Opera | 12.00 | 12.00 |
Opera_browser | Opera | 12.01 | 12.01 |
Opera_browser | Opera | 12.00 | 12.00 |
Opera_browser | Opera | 12.10 | 12.10 |