Synopsis
The remote host is missing a vendor-supplied security patch
Description
The remote host is missing the patch for the advisory SUSE-SA:2005:031 (opera).
The commercial web browser Opera has been updated to the 8.0 version, fixing all currently known security problems, including:
- CVE-2005-0235: IDN cloaking / homograph attack allows easy spoofing of domain names.
- CVE-2005-0456: Opera did not validate base64 encoded binary in data:
URLs correctly.
- CVE-2005-1139: Opera showed the Organizational Information of SSL certificates which could be easily spoofed and be used for phishing attacks.
A full Changelog can be found on:
http://www.opera.com/linux/changelogs/800/
Solution
http://www.suse.de/security/advisories/2005_31_opera.html
Plugin Details
File Name: suse_SA_2005_031.nasl
Agent: unix
Supported Sensors: Nessus Agent, Nessus
Vulnerability Information
Required KB Items: Host/SuSE/rpm-list