Opera before 9.27 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted newsfeed source, which triggers an invalid memory access.
2008-04-12T20:05:00.000
2025-04-09T00:30:58.490
Deferred
CVSSv2: 9.3 (HIGH)
AV:N/AC:M/Au:N/C:C/I:C/A:C
8.6
10.0
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | opera | opera | ≤ 9.26 | Yes |
| Application | opera | opera | 9.02 | Yes |
| Application | opera | opera | 9.10 | Yes |
| Application | opera | opera | 9.20 | Yes |
| Application | opera | opera | 9.21 | Yes |
| Application | opera | opera | 9.22 | Yes |
| Application | opera | opera | 9.23 | Yes |
| Application | opera | opera | 9.24 | Yes |
| Application | opera | opera | 9.25 | Yes |