header-logo
Suggest Exploit
vendor:
Opera
by:
Peter Van Eeckhoutte
7,5
CVSS
HIGH
Denial of Service (memory corruption)
400
CWE
Product Name: Opera
Affected Version From: 10.10
Affected Version To: 10.10
Patch Exists: NO
Related CWE: N/A
CPE: a:opera_software:opera
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows XP SP3
2010

From tiny islands of maldivies

This vulnerability causes a denial of service (memory corruption) via an XML document composed of a long series of start-tags with no corresponding end-tags.

Mitigation:

Ensure that all XML documents are properly formed and contain the correct number of start and end tags.
Source

Exploit-DB raw data:

# From tiny islands of maldivies
# d3b4g.info
# Tested: version 10.10
# Tested on windows XP SP3
# 20-01-2010
# special thanks to peter Van Eeckhoutte

after opening the opera.html broswer hang for a while and crush.same bug in firefox too :d

This vulnerability  cause a denial of service (memory corruption) via an XML document composed of a long series of start-tags with no corresponding end-tags.

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/11247.rar (Opera_10.10-PoC.rar)